Lucene search

K
cvelistIcscertCVELIST:CVE-2021-22651
HistoryFeb 23, 2021 - 5:45 p.m.

CVE-2021-22651

2021-02-2317:45:36
CWE-22
icscert
www.cve.org
8
cve-2021-22651
directory traversal
arbitrary scripts
startup folders

AI Score

7.8

Confidence

High

EPSS

0.001

Percentile

39.5%

When loading a specially crafted file, Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering versions prior to 10.1, and Luxion KeyVR versions prior to 10.1 are, while processing the extraction of temporary files, suffering from a directory traversal vulnerability, which allows an attacker to store arbitrary scripts into automatic startup folders.

CNA Affected

[
  {
    "product": "Luxion KeyShot versions",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "versions prior to 10.1"
      }
    ]
  },
  {
    "product": "Luxion KeyShot Viewer",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "versions prior to 10.1"
      }
    ]
  },
  {
    "product": "Luxion KeyShot Network Rendering",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "versions prior to 10.1"
      }
    ]
  },
  {
    "product": "Luxion KeyVR",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "versions prior to 10.1"
      }
    ]
  }
]

AI Score

7.8

Confidence

High

EPSS

0.001

Percentile

39.5%

Related for CVELIST:CVE-2021-22651