Description
It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) PluginServlet has directory traversal vulnerabilities at the "/api/appInternals/1.0/plugin/pmx" API. The affected endpoint does not have any input validation of the user's input that allows a malicious payload to be injected.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-29809 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) PluginServlet has directory traversal vulnerabilities at the "/api/appInternals/1.0/plugin/pmx" API. The affected endpoint does not have any input validation of the user's input that allows a malicious payload to be injected. |
References
History
No history.
Status: PUBLISHED
Assigner: GovTech CSG
Published:
Updated: 2024-09-16T17:54:38.635Z
Reserved: 2021-10-25T00:00:00.000Z
Link: CVE-2021-42854
No data.
Status : Modified
Published: 2022-03-10T17:44:06.840
Modified: 2024-11-21T06:28:13.940
Link: CVE-2021-42854
No data.
OpenCVE Enrichment
No data.
EUVD