First published: Wed Feb 23 2022(Updated: )
It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent (DSA) uses the ".debug_command.config" file to store a json string that contains a list of IDs and pre-configured commands. The config file is subsequently used by the "/api/appInternals/1.0/agent/configuration" API to map the corresponding ID to a command to be executed.
Credit: cve_disclosure@tech.gov.sg
Affected Software | Affected Version | How to fix |
---|---|---|
Riverbed Steelcentral Appinternals Dynamic Sampling Agent | >=11.0.0<11.8.8 | |
Riverbed Steelcentral Appinternals Dynamic Sampling Agent | >=12.0.0<12.13.0 | |
Riverbed Steelcentral Appinternals Dynamic Sampling Agent | =10.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-42855 is a vulnerability in the SteelCentral AppInternals Dynamic Sampling Agent (DSA) that allows local privilege escalation due to misconfigured write permission on the ".debug_command.config" file.
CVE-2021-42855 affects Riverbed Steelcentral Appinternals Dynamic Sampling Agent versions 10.0.0, 11.0.0 to 11.8.8, and 12.0.0 to 12.13.0.
CVE-2021-42855 has a severity score of 7.8 (high).
To fix CVE-2021-42855, ensure that the ".debug_command.config" file has the correct write permissions and is properly configured.
You can find more information about CVE-2021-42855 at the following link: [https://aternity.force.com/customersuccess/s/article/Local-privilege-escalation-due-to-misconfigured-write-permission-on-debug-command-config-file-CVE-2021-42855](https://aternity.force.com/customersuccess/s/article/Local-privilege-escalation-due-to-misconfigured-write-permission-on-debug-command-config-file-CVE-2021-42855)