CVE-2021-39383: Code Injection
Published Mar 20, 2022
·Updated
DWSurvey v3.2.0 was discovered to contain a remote command execution (RCE) vulnerability via the component /sysuser/SysPropertyAction.java.
Affected Software
1 affected component
Diaowen Dwsurvey=3.2.0
Event History
Mar 20, 2022
CVE Published
via MITRE·09:12 PM
Data Sourced
via MITRE·09:12 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-39383?
CVE-2021-39383 is classified as a critical severity vulnerability due to its potential for remote command execution.
2
How do I fix CVE-2021-39383?
To fix CVE-2021-39383, upgrade DWSurvey to the latest version or apply the provided security patches that address this vulnerability.
3
What software is affected by CVE-2021-39383?
CVE-2021-39383 specifically affects DWSurvey version 3.2.0.
4
What types of attacks can CVE-2021-39383 facilitate?
CVE-2021-39383 allows attackers to execute arbitrary commands on the server remotely, potentially leading to full system compromise.
5
Is CVE-2021-39383 a known vulnerability?
Yes, CVE-2021-39383 is a known vulnerability that has been publicly disclosed and documented.