AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-28403

HIGH · CVSS 8 EPSS 0.66%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-01-29 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2020-28403
Severity
HIGH
CVSS
8
EPSS
0.66%

Original NVD Description

A Cross-Site Request Forgery (CSRF) vulnerability exists in Star Practice Management Web version 2019.2.0.6, allowing an attacker to change the privileges of any user of the application. This can be used to grant himself administrative role or remove the administrative account of the application.