CVE-2021-22961

A code injection vulnerability exists within the firewall software of GlassWire v2.1.167 that could lead to arbitrary code execution from a file in the user path on first execution.
References
Link Resource
https://hackerone.com/reports/1193641 Permissions Required
https://hackerone.com/reports/1193641 Permissions Required
Configurations

Configuration 1 (hide)

cpe:2.3:a:glasswire:glasswire:2.1.167:*:*:*:*:*:*:*

History

21 Nov 2024, 05:51

Type Values Removed Values Added
References () https://hackerone.com/reports/1193641 - Permissions Required () https://hackerone.com/reports/1193641 - Permissions Required

Information

Published : 2021-10-18 13:15

Updated : 2024-11-21 05:51


NVD link : CVE-2021-22961

Mitre link : CVE-2021-22961

CVE.ORG link : CVE-2021-22961


JSON object : View

Products Affected

glasswire

  • glasswire
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')