VYPR
High severity8.1NVD Advisory· Published Aug 17, 2022· Updated Jun 17, 2026

CVE-2021-26639

CVE-2021-26639

Description

This vulnerability is caused by the lack of validation of input values for specific functions if WISA Smart Wing CMS. Remote attackers can use this vulnerability to leak all files in the server without logging in system.

Affected products

3
  • cpe:2.3:a:wisa:smart_wing_cms:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:wisa:smart_wing_cms:*:*:*:*:*:*:*:*range: <r18715.20211229
    • (no CPE)
  • WISA corp./Smart Wing CMSv5
    Range: unspecified

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.