Vulnerability Details CVE-2021-26725
Path Traversal vulnerability when changing timezone using web GUI of Nozomi Networks Guardian, CMC allows an authenticated administrator to read-protected system files. This issue affects: Nozomi Networks Guardian 20.0.7.3 version 20.0.7.3 and prior versions. Nozomi Networks CMC 20.0.7.3 version 20.0.7.3 and prior versions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 62.2%
CVSS Severity
CVSS v3 Score 7.2
CVSS v2 Score 4.0
Products affected by CVE-2021-26725
-
cpe:2.3:a:nozominetworks:central_management_control:*
-
cpe:2.3:a:nozominetworks:guardian:*
-
cpe:2.3:a:nozominetworks:guardian:19.0.4