CVE-2021-33214
Summary
| CVE | CVE-2021-33214 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-07-09 19:15:00 UTC |
| Updated | 2021-09-21 16:33:00 UTC |
| Description | In HMS Ewon eCatcher through 6.6.4, weak filesystem permissions could allow malicious users to access files that could lead to sensitive information disclosure, modification of configuration files, or disruption of normal system operation. |
Risk And Classification
Problem Types: CWE-276
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Hms-networks | Ecatcher | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| eCatcher Desktop — Version 6.6.4 | MISC | labs.bishopfox.com | |
| Advisories | MISC | labs.bishopfox.com | |
| Security at every level of our solution | MISC | www.ewon.biz | |
| eCatcher | MISC | www.ewon.biz | |
| cdn.hms-networks.com/docs/librariesprovider6/cybersecurity/hms-security-advisory-2... | MISC | cdn.hms-networks.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.