Medium severity6.5NVD Advisory· Published Mar 24, 2021· Updated Jun 17, 2026
CVE-2020-15809
CVE-2020-15809
Description
spxmanage on certain SpinetiX devices allows requests that access unintended resources because of SSRF and Path Traversal. This affects HMP350, HMP300, and DiVA through 4.5.2-1.0.36229; HMP400 and HMP400W through 4.5.2-1.0.2-1eb2ffbd; and DSOS through 4.5.2-1.0.2-1eb2ffbd.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8- cpe:2.3:o:spinetix:hmp400_firmware:*:*:*:*:*:*:*:*Range: <=4.5.2-1.0.2-1eb2ffbd
- cpe:2.3:o:spinetix:hmp400w_firmware:*:*:*:*:*:*:*:*Range: <=4.5.2-1.0.2-1eb2ffbd
- SpinetiX/SpinetiX devicesdescription
Patches
Vulnerability mechanics
References
2- support.spinetix.com/wiki/DSOS_release_notesnvdRelease NotesVendor Advisory
- support.spinetix.com/wiki/SpinetiX-SA-20:01nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.