VYPR
Medium severity5.1NVD Advisory· Published Aug 28, 2024· Updated Jun 17, 2026

CVE-2021-38120

CVE-2021-38120

Description

A vulnerability identified in Advance Authentication that allows bash command Injection in administrative controlled functionality of backup due to improper handling in provided command parameters. This issue affects NetIQ Advance Authentication version before 6.3.5.1.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

10
  • cpe:2.3:a:microfocus:netiq_advanced_authentication:*:*:*:*:*:*:*:*+ 7 more
    • cpe:2.3:a:microfocus:netiq_advanced_authentication:*:*:*:*:*:*:*:*range: <6.3
    • cpe:2.3:a:microfocus:netiq_advanced_authentication:6.3:-:*:*:*:*:*:*
    • cpe:2.3:a:microfocus:netiq_advanced_authentication:6.3:sp1:*:*:*:*:*:*
    • cpe:2.3:a:microfocus:netiq_advanced_authentication:6.3:sp2:*:*:*:*:*:*
    • cpe:2.3:a:microfocus:netiq_advanced_authentication:6.3:sp3:*:*:*:*:*:*
    • cpe:2.3:a:microfocus:netiq_advanced_authentication:6.3:sp4:*:*:*:*:*:*
    • cpe:2.3:a:microfocus:netiq_advanced_authentication:6.3:sp4_patch1:*:*:*:*:*:*
    • cpe:2.3:a:microfocus:netiq_advanced_authentication:6.3:sp5:*:*:*:*:*:*
  • Range: <6.3.5.1
  • Range: 6.3.5.1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.