CVE-2020-36542

HIGH

Demokratian - Improper Privilege Management

Title source: rule
STIX 2.1

Description

A vulnerability classified as critical has been found in Demokratian. This affects an unknown part of the file install/install3.php. The manipulation leads to privilege escalation. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.

References (3)

Core 3

Scores

CVSS v3 7.3
EPSS 0.0046
EPSS Percentile 64.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-269
Status published
Products (1)
demokratian/demokratian
Published Jun 07, 2022
Tracked Since Feb 18, 2026