9.8
CVE-2021-27860
- EPSS 42.56%
- Veröffentlicht 08.12.2021 17:15:10
- Zuletzt bearbeitet 24.10.2025 14:13:36
- Quelle cret@cert.org
- CVE-Watchlists
- Unerledigt
A vulnerability in the web management interface of FatPipe WARP, IPVPN, and MPVPN software prior to versions 10.1.2r60p92 and 10.2.2r44p1 allows a remote, unauthenticated attacker to upload a file to any location on the filesystem. The FatPipe advisory identifier for this vulnerability is FPSA006.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Fatpipeinc ≫ Ipvpn Firmware Version5.2.0 Updater34
Fatpipeinc ≫ Ipvpn Firmware Version6.1.2 Updater70p26
Fatpipeinc ≫ Ipvpn Firmware Version6.1.2 Updater70p45-m
Fatpipeinc ≫ Ipvpn Firmware Version6.1.2 Updater70p75-m
Fatpipeinc ≫ Ipvpn Firmware Version7.1.2 Updater39
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater129
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater144
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater150
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater156
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater161p12
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater161p16
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater161p17
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater161p2
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater161p20
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater161p26
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater161p3
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater164
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater164p4
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater164p5
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater165
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater180p2
Fatpipeinc ≫ Ipvpn Firmware Version9.1.2 Updater185
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p10
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p13
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p32
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p35
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p45
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p55
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p58
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p58s1
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p65
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p71
Fatpipeinc ≫ Ipvpn Firmware Version10.1.2 Updater60p82
Fatpipeinc ≫ Ipvpn Firmware Version10.2.2 Updater10
Fatpipeinc ≫ Ipvpn Firmware Version10.2.2 Updater25
Fatpipeinc ≫ Ipvpn Firmware Version10.2.2 Updater38
Fatpipeinc ≫ Warp Firmware Version5.2.0 Updater34
Fatpipeinc ≫ Warp Firmware Version6.1.2 Updater70p26
Fatpipeinc ≫ Warp Firmware Version6.1.2 Updater70p45-m
Fatpipeinc ≫ Warp Firmware Version6.1.2 Updater70p75-m
Fatpipeinc ≫ Warp Firmware Version7.1.2 Updater39
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater129
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater144
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater150
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater156
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater161p12
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater161p16
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater161p17
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater161p2
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater161p20
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater161p26
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater161p3
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater164
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater164p4
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater164p5
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater165
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater180p2
Fatpipeinc ≫ Warp Firmware Version9.1.2 Updater185
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p10
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p13
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p32
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p35
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p45
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p55
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p58
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p58s1
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p65
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p71
Fatpipeinc ≫ Warp Firmware Version10.1.2 Updater60p82
Fatpipeinc ≫ Warp Firmware Version10.2.2 Updater10
Fatpipeinc ≫ Warp Firmware Version10.2.2 Updater25
Fatpipeinc ≫ Warp Firmware Version10.2.2 Updater38
Fatpipeinc ≫ Mpvpn Firmware Version5.2.0 Updater34
Fatpipeinc ≫ Mpvpn Firmware Version6.1.2 Updater70p26
Fatpipeinc ≫ Mpvpn Firmware Version6.1.2 Updater70p45-m
Fatpipeinc ≫ Mpvpn Firmware Version6.1.2 Updater70p75-m
Fatpipeinc ≫ Mpvpn Firmware Version7.1.2 Updater39
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater129
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater144
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater150
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater156
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater161p12
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater161p16
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater161p17
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater161p2
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater161p20
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater161p26
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater161p3
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater164
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater164p4
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater164p5
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater165
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater180p2
Fatpipeinc ≫ Mpvpn Firmware Version9.1.2 Updater185
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p10
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p13
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p32
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p35
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p45
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p55
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p58
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p58s1
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p65
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p71
Fatpipeinc ≫ Mpvpn Firmware Version10.1.2 Updater60p82
Fatpipeinc ≫ Mpvpn Firmware Version10.2.2 Updater10
Fatpipeinc ≫ Mpvpn Firmware Version10.2.2 Updater25
Fatpipeinc ≫ Mpvpn Firmware Version10.2.2 Updater38
10.01.2022: CISA Known Exploited Vulnerabilities (KEV) Catalog
FatPipe WARP, IPVPN, and MPVPN Configuration Upload exploit
SchwachstelleA vulnerability in the web management interface of FatPipe WARP, IPVPN, and MPVPN software allows a remote, unauthenticated attacker to upload a file to any location on the filesystem.
BeschreibungApply updates per vendor instructions.
Erforderliche Maßnahmen| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 42.56% | 0.973 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|
| cret@cert.org | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
CWE-434 Unrestricted Upload of File with Dangerous Type
The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.