CVE-2021-42261
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
Revisor Video Management System (VMS) before 2.0.0 has a directory traversal vulnerability. Successful exploitation could allow an attacker to traverse the file system to access files or directories that are outside of restricted directory on the remote server. This could lead to the disclosure of sensitive data on the vulnerable server.
Revisor Video Management System (VMS) versiones anteriores a 2.0.0, presenta una vulnerabilidad de salto de directorio. Una explotación con éxito podría permitir a un atacante saltar el sistema de archivos para acceder a archivos o directorios que están fuera del directorio restringido en el servidor remoto. Esto podría conllevar a una revelación de datos confidenciales en el servidor vulnerable
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-10-11 CVE Reserved
- 2021-10-19 CVE Published
- 2024-07-04 EPSS Updated
- 2024-08-04 CVE Updated
- 2024-08-04 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CAPEC
References (2)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://github.com/jet-pentest/CVE-2021-42261 | 2024-08-04 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://revisorlab.com | 2021-10-25 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Revisorlab Search vendor "Revisorlab" | Video Management System Search vendor "Revisorlab" for product "Video Management System" | < 2.0.0 Search vendor "Revisorlab" for product "Video Management System" and version " < 2.0.0" | - |
Affected
|