Vulnerability Description
DM FingerTool v1.19 in the DM PD065 Secure USB is susceptible to improper authentication by a replay attack, allowing local attackers to bypass user authentication and access all features and data on the USB.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Dm Fingertool Project | Dm Fingertool | 1.19 |
Related Weaknesses (CWE)
References
- https://github.com/bosslabdcu/Vulnerability-Reporting/security/advisories/GHSA-xExploitThird Party Advisory
- https://sites.google.com/view/boss-labThird Party Advisory
- https://github.com/bosslabdcu/Vulnerability-Reporting/security/advisories/GHSA-xExploitThird Party Advisory
- https://sites.google.com/view/boss-labThird Party Advisory
FAQ
What is CVE-2021-26824?
CVE-2021-26824 is a vulnerability with a CVSS score of 7.1 (HIGH). DM FingerTool v1.19 in the DM PD065 Secure USB is susceptible to improper authentication by a replay attack, allowing local attackers to bypass user authentication and access all features and data on ...
How severe is CVE-2021-26824?
CVE-2021-26824 has been rated HIGH with a CVSS base score of 7.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-26824?
Check the references section above for vendor advisories and patch information. Affected products include: Dm Fingertool Project Dm Fingertool.