CVE-2021-27656: exacqVision Web Services - Information Exposure
A vulnerability in exacqVision Web Service 20.12.2.0 and prior could allow an unauthenticated attacker to view system-level information about the exacqVision Web Service and the operating system.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2021-27656?
CVE-2021-27656 is a vulnerability in exacqVision Web Service 20.12.2.0 and prior that could allow an unauthenticated attacker to view system-level information about the service and the operating system.
What is the severity of CVE-2021-27656?
The severity of CVE-2021-27656 is high, with a CVSS score of 7.5.
How can an attacker exploit CVE-2021-27656?
An attacker can exploit CVE-2021-27656 by sending a specially crafted request to the exacqVision Web Service to retrieve system-level information.
Which versions of exacqVision Web Service are affected by CVE-2021-27656?
exacqVision Web Service versions up to and including 20.12.2.0 are affected by CVE-2021-27656.
Is there a fix available for CVE-2021-27656?
Yes, it is recommended to update exacqVision Web Service to a version that is not vulnerable to CVE-2021-27656.