CVE-2020-10581

HIGH

Invigo ADM <5.0 - Info Disclosure

Title source: llm

Description

Multiple session validity check issues in several administration functionalities of Invigo Automatic Device Management (ADM) through 5.0 allow remote attackers to read potentially sensitive data hosted by the application.

Scores

CVSS v3 7.5
EPSS 0.0029
EPSS Percentile 52.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Classification

CWE
CWE-668
Status published

Affected Products (1)

invigo/automatic_device_management < 5.0

Timeline

Published Mar 25, 2021
Tracked Since Feb 18, 2026