CVE-2020-25846: Panorama Project Nhiservisignadapter

High severity, CVSS 7.4. EPSS: 1% chance of exploitation in the next 30 days.

The digest generation function of NHIServiSignAdapter has not been verified for source file path, which leads to the SMB request being redirected to a malicious host, resulting in the leakage of user's credential.

Affected products

Published 2020-12-31. Last modified 2026-06-17.