CVE-2020-19003
Summary
| CVE | CVE-2020-19003 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-10-06 13:15:00 UTC |
| Updated | 2022-09-14 20:33:00 UTC |
| Description | An issue in Gate One 1.2.0 allows attackers to bypass to the verification check done by the origins list and connect to Gate One instances used by hosts not on the origins list. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Gate One Whitelist Bypass · Issue #728 · liftoff/GateOne · GitHub |
MISC |
github.com |
|
| CWE -
CWE-290: Authentication Bypass by Spoofing (4.3) |
MISC |
cwe.mitre.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 980423 Python (pip) Security Update for gateone (GHSA-q6j2-g8qf-wvf7)