{"id":"CVE-2020-15877","aliases":["GHSA-3c33-3465-fhx2"],"url":"https://o3.security/vulnerability/CVE-2020-15877","summary":"Exposure of Resource to Wrong Sphere in LibreNMS","details":"An issue was discovered in LibreNMS before 1.65.1. It has insufficient access control for normal users because of \"'guard' => 'admin'\" instead of \"'middleware' => ['can:admin']\" in routes/web.php.","published":"2020-07-21T17:15:12.170Z","modified":"2026-07-08T12:05:38.488397Z","cvss":{"score":8.8,"severity":"HIGH","vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"},"epss":{"score":0.01918,"percentile":0.78039,"asOf":"2026-08-23"},"cisaKev":null,"exploitsKnown":1,"affectedPackages":[{"ecosystem":"Packagist","name":"librenms/librenms","fixedVersion":"1.65.1"}],"fix":{"url":"https://github.com/librenms/librenms/commit/e5bb6d80bc308fc56b9a01ffb76c34159995353c","label":"librenms/librenms@e5bb6d8"},"references":[{"type":"ADVISORY","url":"https://community.librenms.org/c/announcements"},{"type":"ADVISORY","url":"https://github.com/librenms/librenms/compare/1.65...1.65.1"},{"type":"ADVISORY","url":"https://github.com/librenms/librenms/releases/tag/1.65.1"},{"type":"FIX","url":"https://github.com/librenms/librenms/commit/e5bb6d80bc308fc56b9a01ffb76c34159995353c"},{"type":"FIX","url":"https://github.com/librenms/librenms/pull/11915"},{"type":"EVIDENCE","url":"https://shielder.it/blog"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-08T12:05:38.488397Z"}}