CVE-2021-20114: High severity tcexam vulnerability
Published Jul 29, 2021
·Updated
When installed following the default/recommended settings, TCExam <= 14.8.1 allowed unauthenticated users to access the /cache/backup/ directory, which included sensitive database backup files.
Affected Software
1 affected component
Tecnick TCExam<=14.8.1
Event History
Jul 29, 2021
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-20114?
The severity of CVE-2021-20114 is high with a severity value of 7.5.
2
How does CVE-2021-20114 affect TCExam?
CVE-2021-20114 affects TCExam version up to and including 14.8.1.
3
What is the vulnerability in TCExam related to CVE-2021-20114?
The vulnerability in TCExam related to CVE-2021-20114 allows unauthenticated users to access the /cache/backup/ directory, which includes sensitive database backup files.
4
How can I fix the vulnerability in TCExam related to CVE-2021-20114?
To fix the vulnerability in TCExam related to CVE-2021-20114, upgrade to a version higher than 14.8.1.
5
Where can I find more information about CVE-2021-20114?
You can find more information about CVE-2021-20114 at the following link: https://www.tenable.com/security/research/tra-2021-32