Логотип exploitDog
bind:CVE-2021-28209
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-28209

Количество 2

Количество 2

nvd логотип

CVE-2021-28209

почти 5 лет назад

The specific function in ASUS BMC’s firmware Web management page (Delete video file function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can use the means of path traversal to access system files.

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-wm46-gchr-6vgg

больше 3 лет назад

The specific function in ASUS BMC’s firmware Web management page (Delete video file function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can use the means of path traversal to access system files.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-28209

The specific function in ASUS BMC’s firmware Web management page (Delete video file function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can use the means of path traversal to access system files.

CVSS3: 4.9
1%
Низкий
почти 5 лет назад
github логотип
GHSA-wm46-gchr-6vgg

The specific function in ASUS BMC’s firmware Web management page (Delete video file function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can use the means of path traversal to access system files.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу