CVE-2021-34690: Critical severity remotepc vulnerability
Published Jul 15, 2021
·Updated
iDrive RemotePC before 7.6.48 on Windows allows authentication bypass. A remote and unauthenticated attacker can bypass cloud authentication to connect and control a system via TCP port 5970 and 5980.
Affected Software
2 affected components
iDrive RemotePC<7.6.48
Microsoft Windows
Event History
Jul 15, 2021
CVE Published
via MITRE·01:18 PM
Data Sourced
via MITRE·01:18 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-34690?
CVE-2021-34690 is classified as a high-severity vulnerability due to its potential for unauthorized access.
2
How do I fix CVE-2021-34690?
To remediate CVE-2021-34690, upgrade iDrive RemotePC to version 7.6.48 or later to close the authentication bypass vulnerability.
3
What type of attack does CVE-2021-34690 facilitate?
CVE-2021-34690 allows a remote and unauthenticated attacker to gain control over a system via TCP ports 5970 and 5980.
4
Which versions of iDrive RemotePC are affected by CVE-2021-34690?
CVE-2021-34690 affects all versions of iDrive RemotePC prior to 7.6.48.
5
What components are involved in CVE-2021-34690?
CVE-2021-34690 involves the authentication mechanism of iDrive RemotePC on Windows systems.