6.1
CVE-2021-33214
- EPSS 0.13%
- Veröffentlicht 09.07.2021 19:15:08
- Zuletzt bearbeitet 21.11.2024 06:08:32
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
In HMS Ewon eCatcher through 6.6.4, weak filesystem permissions could allow malicious users to access files that could lead to sensitive information disclosure, modification of configuration files, or disruption of normal system operation.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hms-networks ≫ Ecatcher Version <= 6.6.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.13% | 0.286 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.1 | 1.3 | 4.7 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H
|
| nvd@nist.gov | 6 | 6.8 | 6.4 |
AV:N/AC:M/Au:S/C:P/I:P/A:P
|
CWE-276 Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.