White Paper:
Virsec Security Research Lab Vulnerability Report – Volume 6, 2020
The Virsec Security Research Lab, helmed by Virsec CTO, Satya Gupta, provides timely, relevant analysis about prevalent security vulnerabilities. Each week, the Virsec team details the top 5 vulnerabilities in open source code and a few vulnerabilities in popular security controls, their affected version, vulnerability details, and how the Virsec Security Platform (VSP) can detect these vulnerabilities. This report includes:
1. CVE-2020-22275: ER Forms WordPress Plugin 2.0.6
2. CVE-2020-22277: Import & Export Users and Customers WordPress Plugin 1.15.5.11
3. CVE-2020-27955: Git LFS 2.12.0 RCE
4. CVE-2020-28168: Axios NPM Package 0.21.0 SSRF Vulnerability
5. CVE-2020-24407: Magento 2.4.0 and 2.3.5p1 RCE

