VYPR
Medium severity5.6NVD Advisory· Published Jun 9, 2022· Updated Jun 17, 2026

CVE-2017-20028

CVE-2017-20028

Description

A vulnerability was found in HumHub 0.20.1/1.0.0-beta.3. It has been classified as critical. This affects an unknown part. The manipulation leads to privilege escalation. It is possible to initiate the attack remotely. Upgrading to version 1.0.0 is able to address this issue. It is recommended to upgrade the affected component.

Affected products

4
  • Humhub/Humhub3 versions
    cpe:2.3:a:humhub:humhub:0.20.1:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:humhub:humhub:0.20.1:*:*:*:*:*:*:*
    • cpe:2.3:a:humhub:humhub:1.0.0:beta3:*:*:*:*:*:*
    • (no CPE)range: <1.0.0
  • unspecified/HumHubv5
    Range: 0.20.1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.