CVE-2021-4277

low-risk
Published 2022-12-25

A vulnerability, which was classified as problematic, has been found in fredsmith utils. This issue affects some unknown processing of the file screenshot_sync of the component Filename Handler. The manipulation leads to predictable from observable state. The name of the patch is dbab1b66955eeb3d76b34612b358307f5c4e3944. It is recommended to apply a patch to fix this issue. The identifier VDB-216749 was assigned to this vulnerability.

Do I need to act?

-
0.20% chance of exploitation
EPSS score — low exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
2
CVSS 2.6/10 Low
ADJACENT_NETWORK / HIGH complexity

Affected Products (1)

Utils

Affected Vendors

13
/ 100
low-risk
Severity 7/34 · Low
Exploitability 1/34 · Minimal
Exposure 5/34 · Minimal