
CVE-2020-36968 M/Monit 3.7.4 contains an authentication vulnerability that allows authenticated attackers to retrieve user password hashes through an administrative API endpoint. At… https://www.cve.org/CVERecord?id=CVE-2020-36968
Post summary
The text announces that CVE‑2020‑36968 in M/Monit 3.7.4 is an authentication flaw that allows authenticated attackers to retrieve user password hashes via an administrative API, with no PoC, exploit code, or patch information provided.
