PT-2021-20084 · Hms · Hms Ewon Ecatcher
Priyank Nigam
·
Published
2021-07-09
·
Updated
2021-09-21
·
CVE-2021-33214
CVSS v3.1
6.1
Medium
| Vector | AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H |
Name of the Vulnerable Software and Affected Versions
HMS Ewon eCatcher versions through 6.6.4
Description
The issue is related to weak filesystem permissions, which could allow malicious users to access files. This access could lead to sensitive information disclosure, modification of configuration files, or disruption of normal system operation.
Recommendations
For HMS Ewon eCatcher versions through 6.6.4, update to a version later than 6.6.4 to resolve the issue.
Exploit
Fix
Incorrect Default Permissions
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Hms Ewon Ecatcher