8.8
CVE-2021-27859
- EPSS 0.75%
- Veröffentlicht 15.12.2021 20:15:08
- Zuletzt bearbeitet 21.11.2024 05:58:39
- Quelle cret@cert.org
- CVE-Watchlists
- Unerledigt
A missing authorization vulnerability in the web management interface of FatPipe WARP, IPVPN, and MPVPN software prior to versions 10.1.2r60p91 and 10.2.2r42 allows an authenticated, remote attacker with read-only privileges to create an account with administrative privileges. Older versions of FatPipe software may also be vulnerable. This does not appear to be a CSRF vulnerability. The FatPipe advisory identifier for this vulnerability is FPSA005.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Fatpipeinc ≫ Ipvpn Firmware Version5.2.0 Updater34
Fatpipeinc ≫ Ipvpn Firmware Version6.1.2 Updater70p26
Fatpipeinc ≫ Ipvpn Firmware Version6.1.2 Updater70p45-m
Fatpipeinc ≫ Ipvpn Firmware Version6.1.2 Updater70p75-m
Fatpipeinc ≫ Ipvpn Firmware Version7.1.2 Updater39
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater129
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater144
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater150
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater156
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater161p12
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater161p16
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater161p17
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater161p2
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater161p20
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater161p26
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater161p3
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater164
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater164p4
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater164p5
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater165
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater180p2
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater185
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p10
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p13
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p32
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p35
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p45
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p55
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p58
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p58s1
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p65
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p71
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p82
Fatpipeinc ≫ Ipvpn Firmware Version10.2.2 Updater10
Fatpipeinc ≫ Ipvpn Firmware Version10.2.2 Updater25
Fatpipeinc ≫ Ipvpn Firmware Version10.2.2 Updater38
Fatpipeinc ≫ Mpvpn Firmware Version5.2.0 Updater34
Fatpipeinc ≫ Mpvpn Firmware Version6.1.2 Updater70p26
Fatpipeinc ≫ Mpvpn Firmware Version6.1.2 Updater70p45-m
Fatpipeinc ≫ Mpvpn Firmware Version6.1.2 Updater70p75-m
Fatpipeinc ≫ Mpvpn Firmware Version7.1.2 Updater39
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater129
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater144
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater150
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater156
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater161p12
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater161p16
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater161p17
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater161p2
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater161p20
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater161p26
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater161p3
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater164
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater164p4
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater164p5
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater165
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater180p2
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater185
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p10
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p13
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p32
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p35
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p45
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p55
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p58
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p58s1
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p65
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p71
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p82
Fatpipeinc ≫ Mpvpn Firmware Version10.2.2 Updater10
Fatpipeinc ≫ Mpvpn Firmware Version10.2.2 Updater25
Fatpipeinc ≫ Mpvpn Firmware Version10.2.2 Updater38
Fatpipeinc ≫ Warp Firmware Version5.2.0 Updater34
Fatpipeinc ≫ Warp Firmware Version6.1.2 Updater70p26
Fatpipeinc ≫ Warp Firmware Version6.1.2 Updater70p45-m
Fatpipeinc ≫ Warp Firmware Version6.1.2 Updater70p75-m
Fatpipeinc ≫ Warp Firmware Version7.1.2 Updater39
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater129
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater144
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater150
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater156
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater161p12
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater161p16
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater161p17
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater161p2
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater161p20
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater161p26
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater161p3
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater164
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater164p4
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater164p5
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater165
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater180p2
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater185
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p10
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p13
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p32
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p35
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p45
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p55
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p58
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p58s1
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p65
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p71
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p82
Fatpipeinc ≫ Warp Firmware Version10.2.2 Updater10
Fatpipeinc ≫ Warp Firmware Version10.2.2 Updater25
Fatpipeinc ≫ Warp Firmware Version10.2.2 Updater38
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.75% | 0.724 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 6.5 | 8 | 6.4 |
AV:N/AC:L/Au:S/C:P/I:P/A:P
|
| cret@cert.org | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-862 Missing Authorization
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.