Skip to main content

CVE-2021-45917

8.0
HIGHCVSS v3.1 Base Score
0.06%
LOW RiskEPSS (20th percentile)

The server-request receiver function of Shockwall system has an improper authentication vulnerability. An authenticated attacker of an agent computer within the local area network can use the local registry information to launch server-side request forgery (SSRF) attack on another agent computer, resulting in arbitrary code execution for controlling the system or disrupting service.

Published: 1/3/2022
Modified: 11/21/2024
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

8HIGH

CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS Score (Exploitation Probability)

0.06%LOW Exploitation Risk
20th percentile

This vulnerability has a 0.06% probability of being exploited in the next 30 days, ranking higher than 20% of all scored CVEs.

Related Vulnerabilities