High severity8.1NVD Advisory· Published Oct 22, 2021· Updated Jun 17, 2026
CVE-2021-38459
CVE-2021-38459
Description
The data of a network capture of the initial handshake phase can be used to authenticate at a SYSDBA level. If a specific .exe is not restarted often, it is possible to access the needed handshake packets between admin/client connections. Using the SYSDBA permission, an attacker can change user passwords or delete the database.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:auvesy:versiondog:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:auvesy:versiondog:*:*:*:*:*:*:*:*range: <8.0.0
- (no CPE)range: All
Patches
Vulnerability mechanics
References
1- us-cert.cisa.gov/ics/advisories/icsa-21-292-01nvdPatchThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.