CVE-2021-21433: Remote code execution on discord-recon .dirsearch and .arjun commands due to improper input validation
Published Apr 9, 2021
·Updated
Discord Recon Server is a bot that allows you to do your reconnaissance process from your Discord. Remote code execution in version 0.0.1 would allow remote users to execute commands on the server resulting in serious issues. This flaw is patched in 0.0.2.
Affected Software
2 affected components
Discord-recon Project Discord-recon<0.0.2
Demon1a Discord-recon<0.0.2
Remediation
Patch Available
Event History
Apr 9, 2021
CVE Published
via MITRE·05:55 PM
Data Sourced
via MITRE·05:55 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-21433?
CVE-2021-21433 has a high severity rating due to the potential for remote code execution.
2
How do I fix CVE-2021-21433?
To fix CVE-2021-21433, upgrade to Discord Recon version 0.0.2 or later.
3
What does CVE-2021-21433 affect?
CVE-2021-21433 affects the Discord Recon Server bot versions prior to 0.0.2.
4
What are the risks associated with CVE-2021-21433?
CVE-2021-21433 can allow remote users to execute arbitrary commands on the server, posing serious security risks.
5
Is CVE-2021-21433 still a threat if I update my software?
No, updating to version 0.0.2 or later mitigates the threat posed by CVE-2021-21433.