High severity7.5NVD Advisory· Published Jul 16, 2021· Updated Jun 17, 2026
CVE-2021-35962
CVE-2021-35962
Description
Specific page parameters in Dr. ID Door Access Control and Personnel Attendance Management system does not filter special characters. Remote attackers can apply Path Traversal means to download credential files from the system without permission.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:secom:door_access_control:*:*:*:*:*:*:*:*Range: <=3.3.2
- cpe:2.3:a:secom:personnel_attendance_system:*:*:*:*:*:*:*:*Range: <=3.4.0.0.3.12_20210525
- Range: unspecified
Patches
Vulnerability mechanics
References
2- www.chtsecurity.com/news/d7ec2db9-12dd-439f-b014-b956ce231054nvdThird Party Advisory
- www.twcert.org.tw/tw/cp-132-4906-89381-1.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.