CVE-2021-32827: GHSL-2021-059: Arbitrary code execution in MockServer - CVE-2021-32827
An attacker that can trick a victim into visiting a malicious site while running MockServer locally, will be able to run arbitrary code on the MockServer machine.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-32827?
CVE-2021-32827 is a vulnerability in MockServer software that allows an attacker to execute arbitrary code on the MockServer machine by tricking a victim into visiting a malicious site.
What is the severity of CVE-2021-32827?
CVE-2021-32827 has a severity rating of 9.6 (critical).
What software is affected by CVE-2021-32827?
MockServer and Oracle Communications Cloud Native Core Policy versions up to 1.14.0 are affected by CVE-2021-32827.
How can an attacker exploit CVE-2021-32827?
An attacker can exploit CVE-2021-32827 by tricking a victim into visiting a malicious site while running MockServer locally, allowing them to run arbitrary code on the MockServer machine.
Are there any references for CVE-2021-32827?
Yes, you can find more information about CVE-2021-32827 at the following references: [https://securitylab.github.com/advisories/GHSL-2021-059-mockserver/](https://securitylab.github.com/advisories/GHSL-2021-059-mockserver/) and [https://www.oracle.com/security-alerts/cpujan2022.html](https://www.oracle.com/security-alerts/cpujan2022.html).