CVE-2021-27198
Unauthenticated Remote Code Execution can occur via Arbitrary File Upload in the web service when using a myspeed/sf?filename= URI.
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 13.6%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.
Description
An issue was discovered in Visualware MyConnection Server before v11.1a. Unauthenticated Remote Code Execution can occur via Arbitrary File Upload in the web service when using a myspeed/sf?filename= URI. This application is written in Java and is thus cross-platform. The Windows installation runs as SYSTEM, which means that exploitation gives one Administrator privileges on the target system.
- CVSS 3.1
- 9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 13.62% probability · 96th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-434
- Affected
- visualware/myconnection server
- Source
- cve@mitre.org
References
- http://packetstormsecurity.com/files/161571/VisualWare-MyConnection-Server-11.x-Remote-Code-Execution.htmlThird Party Advisory, VDB Entry
- http://seclists.org/fulldisclosure/2021/Feb/81Mailing List, Third Party Advisory
- https://myconnectionserver.visualware.com/download.htmlProduct, Vendor Advisory
- https://myconnectionserver.visualware.com/support/newrelease.htmlRelease Notes, Vendor Advisory
- https://www.securifera.com/advisories/cve-2021-27198/Third Party Advisory
- http://packetstormsecurity.com/files/161571/VisualWare-MyConnection-Server-11.x-Remote-Code-Execution.htmlThird Party Advisory, VDB Entry
- http://seclists.org/fulldisclosure/2021/Feb/81Mailing List, Third Party Advisory
- https://myconnectionserver.visualware.com/download.htmlProduct, Vendor Advisory
- https://myconnectionserver.visualware.com/support/newrelease.htmlRelease Notes, Vendor Advisory
- https://www.securifera.com/advisories/cve-2021-27198/Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.