File Read Vulnerability in NSA Emissary Product
CVE-2021-32093

6.5MEDIUM

Key Information:

Vendor

Nsa

Status
Vendor
CVE Published:
7 May 2021

What is CVE-2021-32093?

A security flaw in the ConfigFileAction component of the NSA's Emissary version 5.9.0 allows an authenticated user to exploit the ConfigName parameter to read arbitrary files on the server. This vulnerability could lead to sensitive information disclosure, posing risks to the confidentiality and integrity of the data handled by the application. Organizations using this version of Emissary should prioritize patching to mitigate risks associated with unauthorized file access.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.