{
	"data_type" : "CVE",
	"data_format" : "MITRE",
	"data_version" : "4.0",
	"CVE_data_meta" : {
		"ID" : "CVE-2020-5977",
		"ASSIGNER" : "psirt@nvidia.com",
		"STATE" : "PUBLIC"
	},
	"affects" : {
		"vendor" : {
			"vendor_data" : [
				{
					"vendor_name" : "NVIDIA",
					"product" : {
						"product_data" : [
							{
								"product_name" : "NVIDIA GeForce Experience Software",
								"version" : {
									"version_data" : [
										{
											"version_value" : "All versions prior to 3.20.5.70"
										}
									]
								}
							}
						]
					}
				}
			]
		}
	},
	"problemtype" : {
		"problemtype_data" : [
			{
				"description" : [
					{
						"lang" : "eng",
						"value" : "code execution, denial of service, escalation of privileges, and information disclosure"
					}
				]
			}
		]
	},
	"references" : {
		"reference_data" : [
			{
				"refsource" : "CONFIRM",
				"name" : "https://nvidia.custhelp.com/app/answers/detail/a_id/5076",
				"url" : "https://nvidia.custhelp.com/app/answers/detail/a_id/5076"
			}
		]
	},
	"description" : {
		"description_data" : [
			{
				"lang" : "eng",
				"value" : "NVIDIA GeForce Experience, all versions prior to 3.20.5.70, contains a vulnerability in NVIDIA Web Helper NodeJS Web Server in which an uncontrolled search path is used to load a node module, which may lead to code execution, denial of service, escalation of privileges, and information disclosure."
			}
		]
	}
}
