CVE-2021-21433
Summary
| CVE | CVE-2021-21433 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-04-09 18:15:00 UTC |
| Updated | 2024-01-12 15:05:00 UTC |
| Description | Discord Recon Server is a bot that allows you to do your reconnaissance process from your Discord. Remote code execution in version 0.0.1 would allow remote users to execute commands on the server resulting in serious issues. This flaw is patched in 0.0.2. |
Risk And Classification
Problem Types: CWE-78
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Demon1a | Discord-recon | All | All | All | All |
| Application | Discord-recon Project | Discord-recon | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Fixing Command Injection Issues. · DEMON1A/Discord-Recon@26e2a08 · GitHub | MISC | github.com | |
| Remote code execution on discord-recon .dirsearch and .arjun commands due to improper input validation · Advisory · DEMON1A/Discord-Recon · GitHub | CONFIRM | github.com | |
| Blind-RCE On .dirsearch and .arjun Commands. · Issue #6 · DEMON1A/Discord-Recon · GitHub | MISC | github.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.