PT-2023-11828 · Unknown · Paxswill Eve Ship Replacement Program

Published

2023-02-06

·

Updated

2024-05-17

·

CVE-2020-36660

CVSS v4.0

5.3

Medium

VectorAV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions paxswill EVE Ship Replacement Program version 0.12.11
Description A vulnerability was found in the paxswill EVE Ship Replacement Program, affecting the User Information Handler component. This issue leads to information disclosure and can be initiated remotely. The vulnerability affects some unknown processing of the file src/evesrp/views/api.py.
Recommendations To address this issue, upgrade to version 0.12.12.

Fix

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2020-36660
GHSA-FXQX-XGQQ-GF42
PYSEC-2023-208

Affected Products

Paxswill Eve Ship Replacement Program