CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.3. See the original NVD description below for full technical details.
CVE
CVE-2020-11821
Severity
MEDIUM
CVSS
5.3
EPSS
1.10%
Original NVD Description
In Rukovoditel 2.5.2, users' passwords and usernames are stored in a cookie with URL encoding, base64 encoding, and hashing. Thus, an attacker can easily apply brute force on them.
Related CVEs
Other vulnerabilities affecting the same vendor(s)