CVE-2021-27665: exacqVision Server 32-bit
Published Oct 11, 2021
·Updated
An unauthenticated remote user could exploit a potential integer overflow condition in the exacqVision Server with a specially crafted script and cause denial-of-service condition.
Affected Software
1 affected component
Johnsoncontrols Exacqvision Server<=21.06.11.0
Remediation
Information
Upgrade exacqVision Server 32-bit to version 21.09 or upgrade to exacqVision Server 64-bit
Current users can obtain the critical software update from the Software Download location at: https://www.exacq.com/support/downloads.php
Event History
Oct 11, 2021
CVE Published
via MITRE·03:26 PM
Data Sourced
via MITRE·03:26 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2021-27665?
CVE-2021-27665 is a vulnerability that allows an unauthenticated remote user to cause a denial-of-service condition in the exacqVision Server.
2
How can an attacker exploit CVE-2021-27665?
An attacker can exploit CVE-2021-27665 by sending a specially crafted script to the exacqVision Server.
3
What is the severity of CVE-2021-27665?
The severity of CVE-2021-27665 is high with a CVSS score of 7.5.
4
Which software is affected by CVE-2021-27665?
The exacqVision Server with version up to and including 21.06.11.0 is affected by CVE-2021-27665.
5
How can I mitigate CVE-2021-27665?
To mitigate CVE-2021-27665, it is recommended to update the exacqVision Server to a version beyond 21.06.11.0.