Feed/CVE-2020-16259
CVE-2020-16259CRITICALCVSS 9.8

CVE-2020-16259

Published Oct 28, 2020·Updated Jun 16, 2026

NVD Description

Winston 1.5.4 devices have an SSH user account with access from bastion hosts. This is undocumented in device documents and is not announced to the user.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free