CVE-2021-33214
low-risk
Published 2021-07-09
In HMS Ewon eCatcher through 6.6.4, weak filesystem permissions could allow malicious users to access files that could lead to sensitive information disclosure, modification of configuration files, or disruption of normal system operation.
Do I need to act?
-
0.13% chance of exploitation
EPSS score — low exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
6
CVSS 6.1/10
Medium
LOCAL
/ LOW complexity
Affected Products (1)
Ecatcher
Affected Vendors
References (10)
Third Party Advisory
https://labs.bishopfox.com/advisories
Vendor Advisory
https://www.ewon.biz/about-us/security
Third Party Advisory
https://labs.bishopfox.com/advisories
Vendor Advisory
https://www.ewon.biz/about-us/security
26
/ 100
low-risk
Severity
20/34 · Moderate
Exploitability
1/34 · Minimal
Exposure
5/34 · Minimal