AMP Application Deployment Service in CubeCoders AMP 2.1.x before 2.1.1.2 allows a remote, authenticated user to open ports in the local system firewall by crafting an HTTP(S) request directly to the applicable API endpoint (despite not having permission to make changes to the system's network configuration).
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/CubeCoders/AMP/issues/443 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-04-30T19:56:57
Updated: 2024-08-03T23:10:31.372Z
Reserved: 2021-04-30T00:00:00
Link: CVE-2021-31926
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-04-30T20:15:09.363
Modified: 2024-11-21T06:06:31.640
Link: CVE-2021-31926
Redhat
No data.