Description
A vulnerability in PKI Security Solution of Dream Security could allow arbitrary command execution. This vulnerability is due to insufficient validation of the authorization certificate. An attacker could exploit this vulnerability by sending a crafted HTTP request an affected program. A successful exploit could allow the attacker to remotely execute arbitrary code on a target system.
Published: 2021-08-06
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Update software over 1.0.0.18 version or higher.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2021-13400 A vulnerability in PKI Security Solution of Dream Security could allow arbitrary command execution. This vulnerability is due to insufficient validation of the authorization certificate. An attacker could exploit this vulnerability by sending a crafted HTTP request an affected program. A successful exploit could allow the attacker to remotely execute arbitrary code on a target system.
History

No history.

Subscriptions

Dreamsecurity Magicline4nx.exe
Microsoft Windows
cve-icon MITRE

Status: PUBLISHED

Assigner: krcert

Published:

Updated: 2024-09-16T22:46:44.804Z

Reserved: 2021-02-03T00:00:00.000Z

Link: CVE-2021-26606

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-08-06T15:15:08.617

Modified: 2024-11-21T05:56:34.387

Link: CVE-2021-26606

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses