CVE-2020-28086
Last modified
CVE-2020-28086 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. pass through 1.7.3 has a possibility of using a password for an unintended resource. For exploitation to occur, the user must do a git pull, decrypt a password, and log into a remote service with the password. EPSS estimates a 0.59% chance of exploitation in the next 30 days.
Description
pass through 1.7.3 has a possibility of using a password for an unintended resource. For exploitation to occur, the user must do a git pull, decrypt a password, and log into a remote service with the password. If an attacker controls the central Git server or one of the other members' machines, and also controls one of the services already in the password store, they can rename one of the password files in the Git repository to something else: pass doesn't correctly verify that the content of a file matches the filename, so a user might be tricked into decrypting the wrong password and sending that to a service that the attacker controls. NOTE: for environments in which this threat model is of concern, signing commits can be a solution.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Zx2c4 | Password-Store | <= 1.7.3 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-28086?
How severe is CVE-2020-28086?
How do I fix CVE-2020-28086?
How Strix Helps
- Same Subject, Wrong User: A Cross-Issuer Account Takeover in n8nStrix found an identity-binding bug in n8n's token-exchange flow enabling account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2020
- CVE-2020-28070SourceCodester Alumni Management System 1.0 is affected by S…9.8
- CVE-2020-28071SourceCodester Alumni Management System 1.0 is affected by c…4.8
- CVE-2020-28072A Remote Code Execution vulnerability exists in DourceCodest…7.2
- CVE-2020-28073SourceCodester Library Management System 1.0 is affected by …9.8
- CVE-2020-28074SourceCodester Online Health Care System 1.0 is affected by …9.8
- CVE-2020-2808Vulnerability in the Oracle E-Business Intelligence product …8.2
- CVE-2020-28087A SQL injection vulnerability in /jeecg boot/sys/dict/loadtr…7.5
- CVE-2020-28088An arbitrary file upload vulnerability in /jeecg-boot/sys/co…9.8
- CVE-2020-2809Vulnerability in the Oracle E-Business Intelligence product …8.2
- CVE-2020-28091cxuucms v3 has a SQL injection vulnerability, which can lead…7.5
- CVE-2020-28092PESCMS Team 2.3.2 has multiple reflected XSS via the id para…6.1
- CVE-2020-28093On Tenda AC1200 (Model AC6) 15.03.06.51_multi devices, admin…7.2
Are you affected by CVE-2020-28086?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
