ZeroHour

CVE-2021-33318

PoC
CVSS 3.1
9.8 critical
EPSS
2%p80
Published
()
Modified
Description

An Input Validation Vulnerability exists in Joel Christner .NET C# packages WatsonWebserver, IpMatcher 1.0.4.1 and below (IpMatcher) and 4.1.3 and below (WatsonWebserver) due to insufficient validation of input IP addresses and netmasks against the internal Matcher list of IP addresses and subnets.

Vendors
ipmatcher projectwatsonwebserver project
Products
ipmatcher, watsonwebserver
Weakness
CWE-704
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.