CyberRota Analysis
AI analysis pending.
CVE
CVE-2020-8986
Severity
CRITICAL
CVSS
9.8
EPSS
1.54%
Original NVD Description
lib/NSSDropbox.php in ZendTo prior to 5.22-2 Beta failed to properly check for equality when validating the session cookie, allowing an attacker to gain administrative access with a large number of requests.
Related CVEs
Other vulnerabilities affecting the same vendor(s)