CVE-2020-14500 is a critical vulnerability affecting all versions of Secomea GateManager prior to 9.2c, where an attacker can send a negative value to overwrite arbitrary data. This flaw carries a CVSS score of 9.8, indicating a severe risk with network-based exploitation requiring no user interaction, leading to complete compromise of confidentiality, integrity, and availability. While there is no known active exploitation (KEV) or public exploit code (Metasploit, Nuclei, ExploitDB), the vulnerability has garnered significant community discussion and media coverage, highlighting its perceived importance within the cybersecurity landscape.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
9.2cCPE matchmatch criteria | cpe:2.3:o:secomea:gatemanager_8250_firmware:9.2c:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.