Medium severity4.8NVD Advisory· Published Oct 22, 2021· Updated Jun 17, 2026
CVE-2021-38451
CVE-2021-38451
Description
The affected product’s proprietary protocol CSC allows for calling numerous function codes. In order to call those function codes, the user must supply parameters. There is no sanitation on the value of the offset, which allows the client to specify any offset and read out-of-bounds data.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:auvesy:versiondog:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:auvesy:versiondog:*:*:*:*:*:*:*:*range: <8.0.0
- (no CPE)range: All
Patches
Vulnerability mechanics
References
1- us-cert.cisa.gov/ics/advisories/icsa-21-292-01nvdPatchThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.