CVE-2021-33318
Summary
| CVE | CVE-2021-33318 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-05-16 16:15:00 UTC |
| Updated | 2023-08-08 14:22:00 UTC |
| Description | An Input Validation Vulnerability exists in Joel Christner .NET C# packages WatsonWebserver, IpMatcher 1.0.4.1 and below (IpMatcher) and 4.1.3 and below (WatsonWebserver) due to insufficient validation of input IP addresses and netmasks against the internal Matcher list of IP addresses and subnets. |
Risk And Classification
Problem Types: CWE-704
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ipmatcher Project | Ipmatcher | All | All | All | All |
| Application | Watsonwebserver Project | Watsonwebserver | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| advisories/0-2021.md at main · kaoudis/advisories · GitHub | MISC | github.com | |
| GitHub - jchristn/IpMatcher: C# library for maintaining a match list of IP addresses and networks and comparing inputs to see if a match exists. | MISC | github.com | |
| NuGet v1.0.4.2, fix for SICK-2021-060 · jchristn/IpMatcher@81d77c2 · GitHub | MISC | github.com | |
| GitHub - jchristn/WatsonWebserver: Watson is the fastest, easiest way to build scalable RESTful web servers and services in C#. | MISC | github.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.