TCMAN GIM does not perform an authorization check when trying to access determined resources. A remote attacker could exploit this vulnerability to access URL that require privileges without having them. The exploitation of this vulnerability might allow a remote attacker to obtain sensible information.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-28009 | TCMAN GIM does not perform an authorization check when trying to access determined resources. A remote attacker could exploit this vulnerability to access URL that require privileges without having them. The exploitation of this vulnerability might allow a remote attacker to obtain sensible information. |
Fixes
Solution
This vulnerability has been solved by TCMAN in GIM v8.0.1 Release 31734
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-09-17T00:21:18.085Z
Reserved: 2021-09-10T00:00:00
Link: CVE-2021-40853
No data.
Status : Modified
Published: 2021-12-17T17:15:13.297
Modified: 2024-11-21T06:24:56.063
Link: CVE-2021-40853
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD