Skip to main content

Download of Code Without Integrity Check

CVE-2020-29032

Severity High
Score 8.4/10

Summary

Upload of Code Without Integrity Check vulnerability in firmware archive of Secomea GateManager allows authenticated attacker to execute malicious code on server. This issue affects: Secomea GateManager all versions prior to 9.4.621054022

  • LOW
  • NETWORK
  • HIGH
  • CHANGED
  • REQUIRED
  • HIGH
  • HIGH
  • HIGH

CWE-494 - Download of Code Without Integrity Check

The product downloads source code or an executable from a remote location and executes the code without sufficiently verifying the origin and integrity of the code.

References

Advisory Timeline

  • Published