CVE-2021-42786: Remote Code Execution at AgentControllerServlet
Published Mar 9, 2022
·Updated
It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent (DSA) has Remote Code Execution vulnerabilities in multiple instances of the API requests. The affected endpoints do not have any input validation of the user's input that allowed a malicious payload to be injected.
Affected Software
3 affected components
Riverbed Steelcentral Appinternals Dynamic Sampling Agent>=11.0.0<11.8.8
Riverbed Steelcentral Appinternals Dynamic Sampling Agent>=12.0.0<12.13.0
Riverbed Steelcentral Appinternals Dynamic Sampling Agent=10.0.0
Event History
Mar 9, 2022
CVE Published
via MITRE·04:51 PM
Data Sourced
via MITRE·04:51 PM
DescriptionSeverityWeakness