Description
TCMAN GIM does not perform an authorization check when trying to access determined resources. A remote attacker could exploit this vulnerability to access URL that require privileges without having them. The exploitation of this vulnerability might allow a remote attacker to obtain sensible information.
No analysis available yet.
Remediation
Vendor Solution
This vulnerability has been solved by TCMAN in GIM v8.0.1 Release 31734
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-28009 | TCMAN GIM does not perform an authorization check when trying to access determined resources. A remote attacker could exploit this vulnerability to access URL that require privileges without having them. The exploitation of this vulnerability might allow a remote attacker to obtain sensible information. |
References
History
No history.
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2024-09-17T00:21:18.085Z
Reserved: 2021-09-10T00:00:00.000Z
Link: CVE-2021-40853
No data.
Status : Modified
Published: 2021-12-17T17:15:13.297
Modified: 2024-11-21T06:24:56.063
Link: CVE-2021-40853
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD