CVE-2020-15001
Last modified
CVE-2020-15001 is a medium-severity vulnerability rated 5.3/10 on the CVSS scale. An information leak was discovered on Yubico YubiKey 5 NFC devices 5.0.0 to 5.2.6 and 5.3.0 to 5.3.1. The OTP application allows a user to set optional access codes on OTP slots. EPSS estimates a 0.55% chance of exploitation in the next 30 days.
Description
An information leak was discovered on Yubico YubiKey 5 NFC devices 5.0.0 to 5.2.6 and 5.3.0 to 5.3.1. The OTP application allows a user to set optional access codes on OTP slots. This access code is intended to prevent unauthorized changes to OTP configurations. The access code is not checked when updating NFC specific components of the OTP configurations. This may allow an attacker to access configured OTPs and passwords stored in slots that were not configured by the user to be read over NFC, despite a user having set an access code. (Users who have not set an access code, or who have not configured the OTP slots, are not impacted by this issue.)
Metrics
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Yubico | Yubikey 5 Nfc Firmware | >= 5.0.0, <= 5.2.6 |
| Yubico | Yubikey 5 Nfc Firmware | >= 5.3.0, <= 5.3.1 |
References
- https://www.yubico.com/support/security-advisories/ysa-2020-04/Exploit, Mitigation, Vendor Advisory
- https://www.yubico.com/support/security-advisories/ysa-2020-04/Exploit, Mitigation, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-15001?
How severe is CVE-2020-15001?
How do I fix CVE-2020-15001?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2020
- CVE-2020-1499A spoofing vulnerability exists when Microsoft SharePoint Se…5.4
- CVE-2020-14990IOBit Advanced SystemCare Free 13.5.0.263 allows local users…7.1
- CVE-2020-14993A stack-based buffer overflow on DrayTek Vigor2960, Vigor390…9.8
- CVE-2020-14999A logic bug in system monitoring driver of Acronis Agent aft…7.5
- CVE-2020-1500A spoofing vulnerability exists when Microsoft SharePoint Se…5.4
- CVE-2020-15000A PIN management problem was discovered on Yubico YubiKey 5 …5.9
- CVE-2020-15002OX App Suite through 7.10.3 allows SSRF via the the /ajax/me…5
- CVE-2020-15003OX App Suite through 7.10.3 allows Information Exposure beca…4.3
- CVE-2020-15004OX App Suite through 7.10.3 allows stats/diagnostic?param= X…4.8
- CVE-2020-15005In MediaWiki before 1.31.8, 1.32.x and 1.33.x before 1.33.4,…3.1
- CVE-2020-15006Bludit 3.12.0 allows stored XSS via JavaScript code in an SV…5.4
- CVE-2020-15007A buffer overflow in the M_LoadDefaults function in m_misc.c…9.8
Are you affected by CVE-2020-15001?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
