VYPR
High severity8.1NVD Advisory· Published Oct 22, 2021· Updated Jun 17, 2026

CVE-2021-38459

CVE-2021-38459

Description

The data of a network capture of the initial handshake phase can be used to authenticate at a SYSDBA level. If a specific .exe is not restarted often, it is possible to access the needed handshake packets between admin/client connections. Using the SYSDBA permission, an attacker can change user passwords or delete the database.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Auvesy/Versiondog2 versions
    cpe:2.3:a:auvesy:versiondog:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:auvesy:versiondog:*:*:*:*:*:*:*:*range: <8.0.0
    • (no CPE)range: All

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.