9.3
CVE-2021-20791
- EPSS 0.31%
- Veröffentlicht 17.09.2021 02:15:06
- Zuletzt bearbeitet 21.11.2024 05:47:11
- Quelle vultures@jpcert.or.jp
- CVE-Watchlists
- Unerledigt
Improper access control vulnerability in RevoWorks Browser 2.1.230 and earlier allows an attacker to bypass access restriction and to exchange unauthorized files between the local environment and the isolated environment or settings of the web browser via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Jscom ≫ Revoworks Browser Version >= 2.1.197 <= 2.1.230
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.31% | 0.514 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.3 | 3.9 | 4.7 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
|
| nvd@nist.gov | 6.4 | 10 | 4.9 |
AV:N/AC:L/Au:N/C:P/I:P/A:N
|