Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-42701

Опубликовано: 05 нояб. 2021
Источник: nvd
CVSS3: 5
CVSS3: 6.3
CVSS2: 2.6
EPSS Низкий

Описание

An attacker could prepare a specially crafted project file that, if opened, would attempt to connect to the cloud and trigger a man in the middle (MiTM) attack. This could allow an attacker to obtain credentials and take over the user’s cloud account.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:azeotech:daqfactory:*:*:*:*:*:*:*:*
Версия до 18.1 (включая)
cpe:2.3:a:azeotech:daqfactory:18.1:build_2347:*:*:*:*:*:*

EPSS

Процентиль: 30%
0.0011
Низкий

5 Medium

CVSS3

6.3 Medium

CVSS3

2.6 Low

CVSS2

Дефекты

CWE-471

Связанные уязвимости

github
больше 3 лет назад

An attacker could prepare a specially crafted project file that, if opened, would attempt to connect to the cloud and trigger a man in the middle (MiTM) attack. This could allow an attacker to obtain credentials and take over the user’s cloud account.

EPSS

Процентиль: 30%
0.0011
Низкий

5 Medium

CVSS3

6.3 Medium

CVSS3

2.6 Low

CVSS2

Дефекты

CWE-471