First published: Sun Feb 21 2021(Updated: )
EyesOfNetwork 5.3-10 uses an integer of between 8 and 10 digits for the session ID, which might be leveraged for brute-force authentication bypass (such as in CVE-2021-27513 exploitation).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
EyesOfNetwork EyesOfNetwork | =5.3-10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-27514 is classified as a medium severity vulnerability due to its potential for brute-force authentication bypass.
To fix CVE-2021-27514, it is recommended to upgrade EyesOfNetwork to a version above 5.3-10 that addresses this authentication issue.
CVE-2021-27514 affects EyesOfNetwork version 5.3-10.
Yes, CVE-2021-27514 could potentially lead to unauthorized access, resulting in data breaches and exploitation of other vulnerabilities.
Yes, CVE-2021-27514 can be exploited remotely if an attacker can leverage the authentication bypass.