VYPR
Unrated severityNVD Advisory· Published Feb 22, 2021· Updated Sep 17, 2024

Authenticated command path traversal on timezone settings in Guardian/CMC before 20.0.7.4

CVE-2021-26725

Description

Path Traversal vulnerability when changing timezone using web GUI of Nozomi Networks Guardian, CMC allows an authenticated administrator to read-protected system files. This issue affects: Nozomi Networks Guardian 20.0.7.3 version 20.0.7.3 and prior versions. Nozomi Networks CMC 20.0.7.3 version 20.0.7.3 and prior versions.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Nozominetworks/Cmcllm-fuzzy2 versions
    <= 20.0.7.3+ 1 more
    • (no CPE)range: <= 20.0.7.3
    • (no CPE)range: 20.0.7.3 and prior versions
  • Nozominetworks/Guardianllm-fuzzy2 versions
    <= 20.0.7.3+ 1 more
    • (no CPE)range: <= 20.0.7.3
    • (no CPE)range: 20.0.7.3 and prior versions

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.