CVE-2020-12798
Cellebrite UFED 5.0 to 7.5.0.845 implements local operating system policies that can be circumvented to obtain a command prompt via the Windows file dialog that is reachable via the Certificate-Based Authentication option of the Wireless Network Connection screen.
- Affected products
- Cellebrite Ufed, Windows
- Sun-denshi Universal Forensic Extraction Device Firmware
- ≤ 7.5.0.845
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 0.3% (27th percentile)
- Weakness
- CWE-269
- NVD status
- Modified
- Published
- 2020-05-15
CVE-2020-12798 at NVD
2 known exploits for CVE-2020-12798
Proof-of-concept code and exploit modules indexed by Sploitus