Lucene search

K
nvd[email protected]NVD:CVE-2021-32419
HistoryFeb 17, 2023 - 6:15 p.m.

CVE-2021-32419

2023-02-1718:15:10
CWE-787
web.nvd.nist.gov
1
schism tracker
security issue
sensitive information

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

AI Score

5

Confidence

High

EPSS

0.001

Percentile

46.4%

An issue in Schism Tracker v20200412 fixed in v.20200412 allows attacker to obtain sensitive information via the fmt_mtm_load_song function in fmt/mtm.c.

Affected configurations

Nvd
Node
schismtrackerschism_trackerRange<20200412
VendorProductVersionCPE
schismtrackerschism_tracker*cpe:2.3:a:schismtracker:schism_tracker:*:*:*:*:*:*:*:*

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

AI Score

5

Confidence

High

EPSS

0.001

Percentile

46.4%