Lucene search

K
cvelistJpcertCVELIST:CVE-2021-20844
HistoryNov 24, 2021 - 8:25 a.m.

CVE-2021-20844

2021-11-2408:25:45
jpcert
www.cve.org
1

5.4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.9%

Improper neutralization of HTTP request headers for scripting syntax vulnerability in the Web GUI of RTX830 Rev.15.02.17 and earlier, NVR510 Rev.15.01.18 and earlier, NVR700W Rev.15.00.19 and earlier, and RTX1210 Rev.14.01.38 and earlier allows a remote authenticated attacker to obtain sensitive information via a specially crafted web page.

CNA Affected

[
  {
    "product": "RTX830, NVR510, NVR700W, RTX1210",
    "vendor": "Yamaha Corporation",
    "versions": [
      {
        "status": "affected",
        "version": "RTX830 Rev.15.02.17 and earlier, NVR510 Rev.15.01.18 and earlier, NVR700W Rev.15.00.19 and earlier, RTX1210 Rev.14.01.38 and earlier"
      }
    ]
  }
]

5.4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.9%

Related for CVELIST:CVE-2021-20844