CVE-2021-27825

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published May 29, 2023
Updated: Jan 14, 2025
CWE ID 22

Summary

CVE-2021-27825 is a newly identified directory traversal vulnerability that affects Mercury MAC1200R devices. Malicious actors can exploit this issue by crafting malicious URLs under the web-static/ directory. Successful exploitation grants attackers the ability to read arbitrary files on the affected device, increasing the risk of data leakage and unauthorized access. This vulnerability highlights the importance of regularly updating software and implementing robust access control measures to protect against such attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share