5
CVSSv2

CVE-2021-42857

Published: 10/03/2022 Updated: 15/03/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

It exists that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentDaServlet has directory traversal vulnerabilities at the "/api/appInternals/1.0/agent/da/pcf" API. The affected endpoint does not have any validation of the user's input that allows a malicious payload to be injected.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

riverbed steelcentral appinternals dynamic sampling agent 10.0.0

riverbed steelcentral appinternals dynamic sampling agent