CVE-2021-32006

This issue affects: Secomea GateManager Version 9.6.621421014 and all prior versions. Permission Issues vulnerability in LinkManager web portal of Secomea GateManager allows logged in LinkManager user to access stored SiteManager backup files.
References
Link Resource
https://www.secomea.com/support/cybersecurity-advisory/ Not Applicable Vendor Advisory
https://www.secomea.com/support/cybersecurity-advisory/ Not Applicable Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:secomea:gatemanager:*:*:*:*:*:*:*:*

History

21 Nov 2024, 06:06

Type Values Removed Values Added
References () https://www.secomea.com/support/cybersecurity-advisory/ - Not Applicable, Vendor Advisory () https://www.secomea.com/support/cybersecurity-advisory/ - Not Applicable, Vendor Advisory
CVSS v2 : 4.0
v3 : 4.3
v2 : 4.0
v3 : 5.0

Information

Published : 2022-03-10 17:42

Updated : 2024-11-21 06:06


NVD link : CVE-2021-32006

Mitre link : CVE-2021-32006

CVE.ORG link : CVE-2021-32006


JSON object : View

Products Affected

secomea

  • gatemanager
CWE
CWE-274

Improper Handling of Insufficient Privileges

CWE-275

Permission Issues

CWE-276

Incorrect Default Permissions