CVE-2020-36166 Information
Description
An issue was discovered in Veritas InfoScale 7.x through 7.4.2 on Windows Storage Foundation through 6.1 on Windows Storage Foundation HA through 6.1 on Windows and InfoScale Operations Manager (aka VIOM) Windows Management Server 7.x through 7.4.2. On start-up it loads the OpenSSL library from \usr\local\ssl. This library attempts to load the \usr\local\ssl\openssl.cnf configuration file which may not exist. On Windows systems this path could translate to
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Reference
https://www.veritas.com/content/support/en_US/security/VTS20-014
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
CHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
8.8
Share on: