Description
An arbitrary file deletion vulnerability exists in the file delete functionality of the Html5Servlet endpoint of Draytek VigorConnect 1.6.0-B3. This allows an authenticated user to arbitrarily delete files in any location on the target operating system with root privileges.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-7584 | An arbitrary file deletion vulnerability exists in the file delete functionality of the Html5Servlet endpoint of Draytek VigorConnect 1.6.0-B3. This allows an authenticated user to arbitrarily delete files in any location on the target operating system with root privileges. |
References
| Link | Providers |
|---|---|
| https://www.tenable.com/security/research/tra-2021-42 |
|
History
No history.
Status: PUBLISHED
Assigner: tenable
Published:
Updated: 2024-08-03T17:30:07.367Z
Reserved: 2020-12-17T00:00:00.000Z
Link: CVE-2021-20127
No data.
Status : Modified
Published: 2021-10-13T16:15:07.517
Modified: 2024-11-21T05:45:58.587
Link: CVE-2021-20127
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD