Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2020-26895

EPSS 0.15% · P35
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2020-26895

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Prior to 0.10.0-beta, LND (Lightning Network Daemon) would have accepted a counterparty high-S signature and broadcast tx-relay invalid local commitment/HTLC transactions. This can be exploited by any peer with an open channel regardless of the victim situation (e.g., routing node, payment-receiver, or payment-sender). The impact is a loss of funds in certain situations.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Lightning Network Daemon 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Lightning Network Daemon(LND)是lightningnetwork团队的一个对Lightning Network节点完整实现的软件。该软件属于闪电支付网络的一个节点,实现了Lightning Network Specification Compliance协议中规定的条例,支持用于管道管理的对等协议、比特币交易、洋葱网络协议等功能。 Lightning Network Daemon 0.10-beta之前版本存在安全漏洞,该漏洞源于接受对手方的 high-S签名,并广播tx-re
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2020-26895

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2020-26895

登录查看更多情报信息。

Same Patch Batch · n/a · 2020-10-21 · 23 CVEs total

CVE-2020-77509.6 CRITICALCross-site Scripting (XSS)
CVE-2020-27609BigBlueButton 安全漏洞
CVE-2020-17381Ghisler Total Commander 安全漏洞
CVE-2020-26896Lightning Network Daemon 安全漏洞
CVE-2020-25820BigBlueButton 代码问题漏洞
CVE-2020-27602BigBlueButton 注入漏洞
CVE-2020-27606BigBlueButton 安全漏洞
CVE-2020-27608BigBlueButton 跨站脚本漏洞
CVE-2020-27610BigBlueButton 信息泄露漏洞
CVE-2020-27612BigBlueButton 信息泄露漏洞
CVE-2020-27613BigBlueButton 安全漏洞
CVE-2020-27611BigBlueButton 加密问题漏洞
CVE-2020-17355Arista Networks Arista EOS 安全漏洞
CVE-2020-27607BigBlueButton 安全漏洞
CVE-2020-27605BigBlueButton 安全漏洞
CVE-2020-27604BigBlueButton 安全漏洞
CVE-2020-27603BigBlueButton 安全漏洞
CVE-2020-27601BigBlueButton 安全漏洞
CVE-2018-11764Apache Hadoop 访问控制错误漏洞
CVE-2020-27344WordPress cm-download-manager 跨站脚本漏洞

Showing top 20 of 23 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2020-26895

No comments yet


Leave a comment