CVE-2021-33827: Command Injection
Published Jan 15, 2022
·Updated
The filesantivirus component before 1.0.0 for ownCloud allows OS Command Injection via the administration settings.
Affected Software
1 affected component
ownCloud files antivirus<1.0.0
Event History
Jan 15, 2022
CVE Published
via MITRE·08:55 PM
Data Sourced
via MITRE·08:55 PM
Description
Frequently Asked Questions
1
What is CVE-2021-33827?
CVE-2021-33827 is a vulnerability in the files_antivirus component before version 1.0.0 for ownCloud that allows OS Command Injection via the administration settings.
2
How severe is CVE-2021-33827?
CVE-2021-33827 has a severity rating of 7.2, which is considered critical.
3
What software is affected by CVE-2021-33827?
The affected software is Owncloud Files Antivirus before version 1.0.0.
4
What is the Common Weakness Enumeration (CWE) for CVE-2021-33827?
The CWEs associated with CVE-2021-33827 are CWE-77 (Improper Neutralization of Special Elements used in a Command) and CWE-78 (Improper Neutralization of Special Elements used in an OS Command).
5
How can I fix CVE-2021-33827?
To fix CVE-2021-33827, update the files_antivirus component for ownCloud to version 1.0.0 or higher.