Vulnerability Description
Untrusted search path vulnerability in the installer of SKYSEA Client View Ver.1.020.05b to Ver.16.001.01g allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Skygroup | Skysea Client View | >= 1.020.05b, <= 16.001.01g |
Related Weaknesses (CWE)
References
- https://jvn.jp/en/jp/JVN69635538/index.htmlThird Party Advisory
- https://www.skyseaclientview.net/news/210112_01/Vendor Advisory
- https://jvn.jp/en/jp/JVN69635538/index.htmlThird Party Advisory
- https://www.skyseaclientview.net/news/210112_01/Vendor Advisory
FAQ
What is CVE-2021-20616?
CVE-2021-20616 is a vulnerability with a CVSS score of 7.8 (HIGH). Untrusted search path vulnerability in the installer of SKYSEA Client View Ver.1.020.05b to Ver.16.001.01g allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
How severe is CVE-2021-20616?
CVE-2021-20616 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-20616?
Check the references section above for vendor advisories and patch information. Affected products include: Skygroup Skysea Client View.