High severity7.1NVD Advisory· Published Oct 8, 2020· Updated Jun 17, 2026
CVE-2020-9048
CVE-2020-9048
Description
A vulnerability in specified versions of American Dynamics victor Web Client and Software House CCURE Web Client could allow a remote unauthenticated attacker on the network to delete arbitrary files on the system or render the system unusable by conducting a Denial of Service attack.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- cpe:2.3:a:johnsoncontrols:victor_web_client:*:*:*:*:*:*:*:*Range: <=5.4.1
- Johnson Controls/victor Web Client version 5.4.1 and priorv5Range: unspecified
Patches
Vulnerability mechanics
References
2- www.johnsoncontrols.com/cyber-solutions/security-advisoriesnvdPatchThird Party Advisory
- us-cert.cisa.gov/ics/advisories/icsa-20-282-01nvdMitigationThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.