Логотип exploitDog
bind:CVE-2021-40067
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-40067

Количество 2

Количество 2

nvd логотип

CVE-2021-40067

больше 4 лет назад

The access controls on the Mobility read-write API improperly validate user access permissions; this API is disabled by default. If the API is manually enabled, attackers with both network access to the API and valid credentials can read and write data to it; regardless of access control group membership settings. This vulnerability is fixed in Mobility v12.14.

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-vfw5-ghx2-pfhf

больше 3 лет назад

The access controls on the Mobility read-write API improperly validate user access permissions; this API is disabled by default. If the API is manually enabled, attackers with both network access to the API and valid credentials can read and write data to it; regardless of access control group membership settings. This vulnerability is fixed in Mobility v12.14.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-40067

The access controls on the Mobility read-write API improperly validate user access permissions; this API is disabled by default. If the API is manually enabled, attackers with both network access to the API and valid credentials can read and write data to it; regardless of access control group membership settings. This vulnerability is fixed in Mobility v12.14.

CVSS3: 6.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-vfw5-ghx2-pfhf

The access controls on the Mobility read-write API improperly validate user access permissions; this API is disabled by default. If the API is manually enabled, attackers with both network access to the API and valid credentials can read and write data to it; regardless of access control group membership settings. This vulnerability is fixed in Mobility v12.14.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу