HIGH · 7.8

CVE-2021-38401

Fuji Electric V-Server Lite and Tellus Lite V-Simulator prior to v4.0.12.0 is vulnerable to an untrusted pointer dereference, which may allow an attacker to execute arbitrary code and cause the applic...

Vulnerability Description

Fuji Electric V-Server Lite and Tellus Lite V-Simulator prior to v4.0.12.0 is vulnerable to an untrusted pointer dereference, which may allow an attacker to execute arbitrary code and cause the application to crash.

CVSS Score

7.8

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
FujielectricV-Server< 4.0.12.0
FujielectricV-Simulator< 4.0.12.0

Related Weaknesses (CWE)

References

FAQ

What is CVE-2021-38401?

CVE-2021-38401 is a vulnerability with a CVSS score of 7.8 (HIGH). Fuji Electric V-Server Lite and Tellus Lite V-Simulator prior to v4.0.12.0 is vulnerable to an untrusted pointer dereference, which may allow an attacker to execute arbitrary code and cause the applic...

How severe is CVE-2021-38401?

CVE-2021-38401 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2021-38401?

Check the references section above for vendor advisories and patch information. Affected products include: Fujielectric V-Server, Fujielectric V-Simulator.