AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-7478

HIGH · CVSS 7.5 EPSS 3.97%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-03-23 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.5. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.

CVE
CVE-2020-7478
Severity
HIGH
CVSS
7.5
EPSS
3.97%

Original NVD Description

A CWE-22: Improper Limitation of a Pathname to a Restricted Directory exists in IGSS (Versions 14 and prior using the service: IGSSupdate), which could allow a remote unauthenticated attacker to read arbitrary files from the IGSS server PC on an unrestricted or shared network when the IGSS Update Service is enabled.

Related CVEs

Other vulnerabilities affecting the same vendor(s)