CVE-2020-36542

HIGH

demokratian - Privilege Escalation in install/install3.php

Title source: llm
STIX 2.1

Description

A vulnerability classified as critical has been found in Demokratian. This affects an unknown part of the file install/install3.php. The manipulation leads to privilege escalation. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.

References (3)

Core 3

Scores

CVSS v3 7.3
EPSS 0.0133
EPSS Percentile 67.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-269
Status published
Products (1)
demokratian/demokratian
Published Jun 07, 2022
Tracked Since Feb 18, 2026