CVE-2020-12053: Unisys Stealth
Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.
In Unisys Stealth 3.4.x, 4.x and 5.x before 5.0.026, if certificate-based authorization is used without HTTPS, an endpoint could be authorized without a private key.
Affected products
- Unisys Stealth: from 3.4, before 5.0.026 (fixed in 5.0.026)
Published 2020-06-22. Last modified 2026-06-17.