PT-2021-10273 · Halo · Halo

Kingz40O

·

Published

2021-07-12

·

Updated

2022-10-26

·

CVE-2020-19038

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Halo version 0.4.3
Description: A File Deletion issue exists via the delBackup function.
Recommendations: For Halo version 0.4.3, consider restricting access to the delBackup function as a temporary workaround until a patch is available.

Exploit

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2020-19038

Affected Products

Halo