CyberSec.Space Logo
CVEブラウザに戻る

CVE-2021-20127

HIGH
8.1
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile0.00th
Published2021-10-13
Last Modified2024-11-21
Data SourcesNVD

Vulnerability Description

An arbitrary file deletion vulnerability exists in the file delete functionality of the Html5Servlet endpoint of Draytek VigorConnect 1.6.0-B3. This allows an authenticated user to arbitrarily delete files in any location on the target operating system with root privileges.

Affected Platforms (CPE)

📦
Draytek

Vigorconnect

= 1.6.0

References & Advisories

関連する脆弱性情報

CVE-2021-20127 Detail & Impact Analysis | CVSS 8.1 (HIGH) | Cyber-Sec.Space | Cyber-Sec.Space