Логотип exploitDog
bind:CVE-2021-34993
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-34993

Количество 3

Количество 3

nvd логотип

CVE-2021-34993

около 4 лет назад

This vulnerability allows remote attackers to bypass authentication on affected installations of Commvault CommCell 11.22.22. Authentication is not required to exploit this vulnerability. The specific flaw exists within the CVSearchService service. The issue results from the lack of proper validation prior to authentication. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-13706.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-95jr-2g3p-6m72

около 4 лет назад

This vulnerability allows remote attackers to bypass authentication on affected installations of Commvault CommCell 11.22.22. Authentication is not required to exploit this vulnerability. The specific flaw exists within the CVSearchService service. The issue results from the lack of proper validation prior to authentication. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-13706.

EPSS: Низкий
fstec логотип

BDU:2022-00020

больше 4 лет назад

Уязвимость службы CVSearchService программного средства управления хранилищем CommCell, позволяющая нарушителю обойти процедуру аутентификации или получить несанкционированный доступ к устройству

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-34993

This vulnerability allows remote attackers to bypass authentication on affected installations of Commvault CommCell 11.22.22. Authentication is not required to exploit this vulnerability. The specific flaw exists within the CVSearchService service. The issue results from the lack of proper validation prior to authentication. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-13706.

CVSS3: 9.8
0%
Низкий
около 4 лет назад
github логотип
GHSA-95jr-2g3p-6m72

This vulnerability allows remote attackers to bypass authentication on affected installations of Commvault CommCell 11.22.22. Authentication is not required to exploit this vulnerability. The specific flaw exists within the CVSearchService service. The issue results from the lack of proper validation prior to authentication. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-13706.

0%
Низкий
около 4 лет назад
fstec логотип
BDU:2022-00020

Уязвимость службы CVSearchService программного средства управления хранилищем CommCell, позволяющая нарушителю обойти процедуру аутентификации или получить несанкционированный доступ к устройству

CVSS3: 9.8
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу