CVE-2021-42712: High severity splashtop vulnerability
Published Feb 15, 2022
·Updated
Splashtop Streamer through 3.4.8.3 creates a Temporary File in a Directory with Insecure Permissions.
Affected Software
1 affected component
Splashtop Streamer Windows<3.5.0.0
Event History
Feb 15, 2022
CVE Published
via MITRE·01:45 PM
Data Sourced
via MITRE·01:45 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for Splashtop Streamer?
The vulnerability ID for Splashtop Streamer is CVE-2021-42712.
2
What is the severity of CVE-2021-42712?
CVE-2021-42712 has a severity of 7.8 (high).
3
What is the affected software for CVE-2021-42712?
The affected software for CVE-2021-42712 is Splashtop Streamer version up to exclusive 3.5.0.0 for Windows.
4
How does CVE-2021-42712 exploit the vulnerability?
CVE-2021-42712 exploits the vulnerability by creating a Temporary File in a Directory with Insecure Permissions.
5
How can I fix CVE-2021-42712?
To fix CVE-2021-42712, update Splashtop Streamer to version 3.5.0.0 or higher.