VYPR
High severity7.1NVD Advisory· Published Apr 23, 2021· Updated Jun 17, 2026

CVE-2021-31540

CVE-2021-31540

Description

Wowza Streaming Engine through 4.8.5 (in a default installation) has incorrect file permissions of configuration files in the conf/ directory. A regular local user is able to read and write to all the configuration files, e.g., modify the application server configuration.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Wowza/Streaming Enginellm-fuzzy2 versions
    <=4.8.5+ 1 more
    • (no CPE)range: <=4.8.5
    • cpe:2.3:a:wowza:streaming_engine:*:*:*:*:*:*:*:*range: <=4.8.5
  • Wowza Streaming Engine/Wowza Streaming Enginedescription

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.