CVE-2020-14976: GNS3 Ubridge
Medium severity, CVSS 5.5. EPSS: 0.5% chance of exploitation in the next 30 days.
GNS3 ubridge through 0.9.18 on macOS, as used in GNS3 server before 2.1.17, allows a local attacker to read arbitrary files because it handles configuration-file errors by printing the configuration file while executing in a setuid root context.
Affected products
- GNS3 Ubridge: up to and including 0.9.18
Published 2020-06-23. Last modified 2026-06-17.