CVE-2021-27825
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published May 29, 2023
Updated: Jan 14, 2025
CWE ID 22
Summary
CVE-2021-27825 is a newly identified directory traversal vulnerability that affects Mercury MAC1200R devices. Malicious actors can exploit this issue by crafting malicious URLs under the web-static/ directory. Successful exploitation grants attackers the ability to read arbitrary files on the affected device, increasing the risk of data leakage and unauthorized access. This vulnerability highlights the importance of regularly updating software and implementing robust access control measures to protect against such attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.