ZeroHour

CVE-2021-21783

PoC
CVSS 3.1
9.8 critical
EPSS
5%p92
Published
()
Modified
Description

A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead to remote code execution. An attacker can send an HTTP request to trigger this vulnerability.

Vendors
geniviaoracle
Products
gsoap, communications diameter signaling router, communications eagle application processor, communications eagle lnp application processor, communications lsms, tekelec virtual operating environment
Weakness
CWE-680, CWE-190
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.