CVE-2021-33601: Arbitrary Code Execution in Web Interface of F-Secure Internet Gatekeeper
A vulnerability was discovered in the web user interface of F-Secure Internet Gatekeeper. An authenticated user can modify settings through the web user interface in a way that could lead to an arbitrary code execution on the F-Secure Internet Gatekeeper server.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2021-33601?
CVE-2021-33601 is a vulnerability discovered in the web user interface of F-Secure Internet Gatekeeper.
What is the severity of CVE-2021-33601?
The severity of CVE-2021-33601 is high with a CVSS score of 8.8.
How can an authenticated user exploit CVE-2021-33601?
An authenticated user can exploit CVE-2021-33601 by modifying settings through the web user interface, potentially leading to arbitrary code execution on the F-Secure Internet Gatekeeper server.
Which version of F-Secure Internet Gatekeeper is affected by CVE-2021-33601?
F-Secure Internet Gatekeeper versions between 5.10 and 5.50.47 are affected by CVE-2021-33601.
How can I learn more about CVE-2021-33601?
You can find more information about CVE-2021-33601 in F-Secure's vulnerability reward program hall of fame and security advisories.