# CVE-2020-29022

## Summary

- **CVE ID:** CVE-2020-29022
- **Severity:** MEDIUM
- **CVSS Score:** 5.3 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
- **CWE:** CWE-159
- **Published:** Feb 16, 2021
- **Last Modified:** Mar 14, 2026

## Description

Failure to Sanitize host header value on output in the GateManager Web server could allow an attacker to conduct web cache poisoning attacks. This issue affects Secomea GateManager all versions prior to 9.3

## Affected Products

- Secomea — GateManager (all)

## References

- [CNA](https://www.secomea.com/support/cybersecurity-advisory/#2923)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.21%
- **EPSS Percentile:** 43.8

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._