VulnerabilityModified
CVE-2021-27571
An issue was discovered in Emote Remote Mouse through 4.0.0.0.
MEDIUM 5.3EPSS 1.15%
Does this matter?
Lower severity and a low EPSS score (1.15%). Track it; it rarely justifies an emergency change on its own.
Description
An issue was discovered in Emote Remote Mouse through 4.0.0.0. Attackers can retrieve recently used and running applications, their icons, and their file paths. This information is sent in cleartext and is not protected by any authentication logic.
- CVSS 3.1
- 5.3 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
- EPSS
- 1.15% probability · 65th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-306
- Affected
- remotemouse/emote remote mouse
- Source
- cve@mitre.org
References
- https://axelp.io/MouseTrapExploit, Third Party Advisory
- https://remotemouse.net/blog/Product
- https://axelp.io/MouseTrapExploit, Third Party Advisory
- https://remotemouse.net/blog/Product
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.