CVE-2020-23139: Microweber
Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Microweber 1.1.18 is affected by broken authentication and session management. Local session hijacking may occur, which could result in unauthorized access to system data or functionality, or a complete system compromise.
Affected products
- Microweber Microweber: version 1.1.18 only
Published 2020-11-09. Last modified 2026-06-17.