HIGH · 8.1

CVE-2021-26617

This issues due to insufficient verification of the various input values from user’s input. The vulnerability allows remote attackers to execute malicious code in Firstmall via navercheckout_add funct...

Vulnerability Description

This issues due to insufficient verification of the various input values from user’s input. The vulnerability allows remote attackers to execute malicious code in Firstmall via navercheckout_add function.

CVSS Score

8.1

HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
FirstmallFirstmall-
MicrosoftWindows-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2021-26617?

CVE-2021-26617 is a vulnerability with a CVSS score of 8.1 (HIGH). This issues due to insufficient verification of the various input values from user’s input. The vulnerability allows remote attackers to execute malicious code in Firstmall via navercheckout_add funct...

How severe is CVE-2021-26617?

CVE-2021-26617 has been rated HIGH with a CVSS base score of 8.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2021-26617?

Check the references section above for vendor advisories and patch information. Affected products include: Firstmall Firstmall, Microsoft Windows.