First published: Wed Feb 24 2021(Updated: )
Directory traversal vulnerability in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows authenticated attackers to delete arbitrary files and/or directories on the server via unspecified vectors.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Contec Sv-cpt-mc310 Firmware | <6.5 | |
Contec Sv-cpt-mc310 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for the SolarView Compact SV-CPT-MC310 directory traversal vulnerability is CVE-2021-20661.
The severity of CVE-2021-20661 is high with a CVSS score of 8.1.
The affected software for CVE-2021-20661 is SolarView Compact SV-CPT-MC310 prior to Ver.6.5.
Authenticated attackers can exploit CVE-2021-20661 to delete arbitrary files and/or directories on the server via unspecified vectors.
Yes, SolarView Compact SV-CPT-MC310 prior to Ver.6.5 is vulnerable to CVE-2021-20661.
To fix CVE-2021-20661, update SolarView Compact SV-CPT-MC310 firmware to Ver.6.5 or later.
You can find more information about CVE-2021-20661 at the following references: [Reference 1](https://jvn.jp/en/jp/JVN37417423/index.html), [Reference 2](https://www.contec.com/jp/api/downloadlogger?download=https://www.contec.com/jp/-/media/contec/jp/support/security-info/contec_security_solarview_210216.pdf), [Reference 3](https://www.contec.com/jp/download/contract/contract2/?itemid=b28c8b7c-9f40-40b2-843c-b5b04c035b0e&downloaditemid=fa248fba-8901-4d9e-8212-b139f2defbdf).