CVE-2020-12133
The Apros Evolution, ConsciusMap, and Furukawa provisioning systems through 2.8.1 allow remote code execution because of javax.faces.ViewState Java deserialization.
- Affected products
- Furukawa Provisioning Systems, Java
- Farukawa Electric Consciousmap
- ≤ 2.8.1
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 9.9% (95th percentile)
- Weakness
- CWE-502
- NVD status
- Modified
- Published
- 2020-04-27
CVE-2020-12133 at NVD
4 known exploits for CVE-2020-12133
Proof-of-concept code and exploit modules indexed by Sploitus