NVD disclosure day

Published threat advisories for March 16, 2020

CVE advisoryKnown Exploit

CVE-2020-5849

Unraid Authentication Bypass Leading to Unauthorized Access

Halo Surface Signal: 3 out of 5 — possibly public-facing.

A vulnerability in Unraid allows bypassing authentication, potentially granting attackers unauthorized access and control of the system. This could expose sensitive data or lead to further system compromise. The risk to affected organizations is significant due to the potential for unauthorized access and system manipu

• CISA KEV

CVE advisoryCRITICAL

CVE-2020-6990

Rockwell Automation Controllers and Software Vulnerable to Unauthorized Access

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in Rockwell Automation controllers and software could allow unauthorized remote access to controllers if an attacker discovers an embedded cryptographic key. This impacts operational technology systems and poses a risk to business operations.