« Volver al listado

CVE-2020-5396

Estado: ModificadaAlta (8.8)—

VMware GemFire versions prior to 9.10.0, 9.9.2, 9.8.7, and 9.7.6, and VMware Tanzu GemFire for VMs versions prior to 1.11.1 and 1.10.2, when deployed without a SecurityManager, contain a JMX service available which contains an insecure default configuration. This allows a malicious user to create an MLet mbean leading to remote code execution.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (2)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2020-5396",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 6.5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:S/C:P/I:P/A:P",
          "authentication": "SINGLE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 6.4,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 8,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 8.8,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "LOW",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 2.8
      }
    ]
  },
  "affected": [
    {
      "source": "security@pivotal.io",
      "affectedData": [
        {
          "vendor": "VMware Tanzu",
          "product": "VMware Tanzu GemFire for VMs",
          "versions": [
            {
              "status": "affected",
              "version": "1.10",
              "lessThan": "1.10.2",
              "versionType": "custom"
            },
            {
              "status": "affected",
              "version": "1.11",
              "lessThan": "1.11.1",
              "versionType": "custom"
            }
          ]
        },
        {
          "vendor": "VMware Tanzu",
          "product": "VMware GemFire",
          "versions": [
            {
              "status": "affected",
              "version": "9.7",
              "lessThan": "9.7.6",
              "versionType": "custom"
            },
            {
              "status": "affected",
              "version": "9.8",
              "lessThan": "9.8.7",
              "versionType": "custom"
            },
            {
              "status": "affected",
              "version": "9.9",
              "lessThan": "9.9.2",
              "versionType": "custom"
            },
            {
              "status": "affected",
              "version": "9.10",
              "lessThan": "9.10.0",
              "versionType": "custom"
            }
          ]
        }
      ]
    }
  ],
  "published": "2020-07-31T20:15:12.937",
  "references": [
    {
      "url": "https://tanzu.vmware.com/security/cve-2020-5396",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "security@pivotal.io"
    },
    {
      "url": "https://tanzu.vmware.com/security/cve-2020-5396",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "security@pivotal.io",
      "description": [
        {
          "lang": "en",
          "value": "CWE-284"
        }
      ]
    },
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-862"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "VMware GemFire versions prior to 9.10.0, 9.9.2, 9.8.7, and 9.7.6, and VMware Tanzu GemFire for VMs versions prior to 1.11.1 and 1.10.2, when deployed without a SecurityManager, contain a JMX service available which contains an insecure default configuration. This allows a malicious user to create an MLet mbean leading to remote code execution."
    },
    {
      "lang": "es",
      "value": "VMware GemFire versiones anteriores a 9.10.0, 9.9.2, 9.8.7 y 9.7.6, y VMware Tanzu GemFire para Máquinas Virtuales versiones anteriores a 1.11.1 y 1.10.2, cuando es implementado sin un SecurityManager, contienen un servicio JMX disponible que contiene una configuración predeterminada no segura. Esto permite a un usuario malicioso crear un MLet mbean que conlleva a una ejecución de código remota"
    }
  ],
  "lastModified": "2026-06-17T03:21:24.550",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:vmware:gemfire:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "C6B191E4-26E0-4C8B-AD50-71E3A5ED854F",
              "versionEndExcluding": "9.7.6",
              "versionStartIncluding": "9.7.0"
            },
            {
              "criteria": "cpe:2.3:a:vmware:gemfire:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "9E34E404-EE19-470C-85A0-D2425F0AA3D2",
              "versionEndExcluding": "9.8.7",
              "versionStartIncluding": "9.8.0"
            },
            {
              "criteria": "cpe:2.3:a:vmware:gemfire:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "39FD04DB-C839-4740-88C7-E19F24B719FB",
              "versionEndExcluding": "9.9.2",
              "versionStartIncluding": "9.9.0"
            }
          ],
          "operator": "OR"
        }
      ]
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:vmware:tanzu_gemfire_for_virtual_machines:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "38FCC8D1-58E7-4FC6-85F4-1E2CBA3442A9",
              "versionEndExcluding": "1.10.2",
              "versionStartIncluding": "1.10.0"
            },
            {
              "criteria": "cpe:2.3:a:vmware:tanzu_gemfire_for_virtual_machines:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "080D10F4-C59C-48FC-ABAF-F1FC80A5F8AD",
              "versionEndExcluding": "1.11.1",
              "versionStartIncluding": "1.11.0"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "security@pivotal.io"
}