M&M Software fdtCONTAINER Component in versions below 3.5.20304.x and between 3.6 and 3.6.20304.x is vulnerable to deserialization of untrusted data in its project storage.
📦
pactware
Vendor: icsgmbh
Actively Exploited
0
CISA KEV List
PoC / Exploits
0
Code Available
Total RCEs
1
Remote Access
Total CVEs
4
Total Indexed
Avg. EPSS
0.78%
Exploit Prob.
Security Vulnerability Index
Page 1 / 1
7.3
CVSS
CVE-2020-12525
RCE
Severity: HIGH
7.1
CVSS
In PACTware before 4.1 SP6 and 5.x before 5.0.5.31, passwords are stored in an insecure manner, and may be modified by an attacker with no knowledge of the current passwords.
Severity: HIGH
5.5
CVSS
In PACTware before 4.1 SP6 and 5.x before 5.0.5.31, passwords are stored in a recoverable format, and may be retrieved by any user with access to the PACTware workstation.
Severity: MEDIUM
4.3
CVSS
PACTware 4.1 SP3 allows remote attackers to cause a denial of service (application crash) via a crafted file that triggers an internal error.
Severity: MEDIUM