The programming function of Shockwall system has an improper input validation vulnerability. An authenticated attacker within the local area network can send malicious response to the server to disrupt the service partially.
References
Link | Resource |
---|---|
https://www.twcert.org.tw/tw/cp-132-5432-b9074-1.html | Third Party Advisory |
Configurations
History
11 Jan 2022, 18:49
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-20 | |
CVSS |
v2 : v3 : |
v2 : 2.7
v3 : 3.5 |
CPE | cpe:2.3:a:smr:shenwang_endpoint_protection_security_system:*:*:*:*:*:*:*:* | |
References | (CONFIRM) https://www.twcert.org.tw/tw/cp-132-5432-b9074-1.html - Third Party Advisory |
03 Jan 2022, 10:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-01-03 10:15
Updated : 2024-02-04 22:08
NVD link : CVE-2021-45916
Mitre link : CVE-2021-45916
CVE.ORG link : CVE-2021-45916
JSON object : View
Products Affected
smr
- shenwang_endpoint_protection_security_system
CWE
CWE-20
Improper Input Validation