CNNVD-202601-1033 Information

CNNVD ID

CNNVD-202601-1033

CVE-2020-36908

  • CNNVD Published: 2026-01-06

Description (Chinese)

SnapGear Management Console SG560是SnapGear公司的一款多功能网络安全网关。 SnapGear Management Console SG560存在跨站请求伪造漏洞,该漏洞源于容易受到跨站请求伪造攻击,可能导致创建具有完全权限的新超级用户账户。

Description (English)

SnapGear Management Consortium SG560 is a multi-purpose network security gateway for SnapGear. SnapGear Management Console SG560 has a false loophole in cross-site requests, which stems from the vulnerability of cross-site requests to forge attacks and may lead to the creation of new super-user accounts with full access.

Hazard Level

High

Vulnerability Type

跨站请求伪造

Affected Vendor

SnapGear

Published

2026-01-06

Last Modified

2026-02-24

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/182969 https://packetstorm.news/files/id/157937 https://www.exploit-db.com/exploits/48554 https://www.vulncheck.com/advisories/secure-computing-snapgear-management-console-sg-cross-site-request-forgery-via-admin-users https://www.zeroscience.mk/en/vulnerabilities/ZSL-2020-5567.php

Share on: