Remote Code Execution Vulnerability in Genivia gSOAP Plugin
CVE-2021-21783
9.8CRITICAL
What is CVE-2021-21783?
A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. When an attacker crafts a specially formatted SOAP request, it could result in remote code execution on the targeted system. This vulnerability can be triggered through the transmission of an HTTP request, allowing potential attackers to execute arbitrary commands, thereby compromising the integrity of affected systems.
Affected Version(s)
Genivia Genivia gSOAP 2.8.109, Genivia gSOAP 2.8.110