Critical severity9.8NVD Advisory· Published Mar 21, 2021· Updated Jun 17, 2026
CVE-2020-13963
CVE-2020-13963
Description
SOPlanning before 1.47 has Incorrect Access Control because certain secret key information, and the related authentication algorithm, is public. The key for admin is hardcoded in the installation code, and there is no key for publicsp (which is a guest account).
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:soplanning:soplanning:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:soplanning:soplanning:*:*:*:*:*:*:*:*range: >=1.45,<1.47
- (no CPE)range: <1.47
- SOPlanning/SOPlanningdescription
Patches
Vulnerability mechanics
References
3- forum.soplanning.org/viewforum.phpnvdVendor Advisory
- labs.integrity.pt/advisories/cve-2020-13963/nvdThird Party Advisory
- cwe.mitre.org/data/definitions/321.htmlnvdTechnical Description
News mentions
0No linked articles in our index yet.