MEDIUM · 5.3

CVE-2021-23195

Fresenius Kabi Vigilant Software Suite (Mastermed Dashboard) version 2.0.1.3 has the option for automated indexing (directory listing) activated. When accessing a directory, a web server delivers its ...

Vulnerability Description

Fresenius Kabi Vigilant Software Suite (Mastermed Dashboard) version 2.0.1.3 has the option for automated indexing (directory listing) activated. When accessing a directory, a web server delivers its entire content in HTML form. If an index file does not exist and directory listing is enabled, all content of the directory will be displayed, allowing an attacker to identify and access files on the server.

CVSS Score

5.3

MEDIUM

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
LOW
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
Fresenius-KabiAgilia Connect Firmware<= d25
Fresenius-KabiAgilia Connect-
Fresenius-KabiAgilia Partner Maintenance Software<= 3.3.0
Fresenius-KabiVigilant Centerium1.0
Fresenius-KabiVigilant Insight1.0
Fresenius-KabiVigilant Mastermed1.0
Fresenius-KabiLink\+ Agilia Firmware< 3.0
Fresenius-KabiLink\+ Agilia-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2021-23195?

CVE-2021-23195 is a vulnerability with a CVSS score of 5.3 (MEDIUM). Fresenius Kabi Vigilant Software Suite (Mastermed Dashboard) version 2.0.1.3 has the option for automated indexing (directory listing) activated. When accessing a directory, a web server delivers its ...

How severe is CVE-2021-23195?

CVE-2021-23195 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2021-23195?

Check the references section above for vendor advisories and patch information. Affected products include: Fresenius-Kabi Agilia Connect Firmware, Fresenius-Kabi Agilia Connect, Fresenius-Kabi Agilia Partner Maintenance Software, Fresenius-Kabi Vigilant Centerium, Fresenius-Kabi Vigilant Insight.