« Volver al listado

CVE-2021-32957

Estado: ModificadaAlta (7.5)—

A function in MDT AutoSave versions prior to v6.02.06 is used to retrieve system information for a specific process, and this information collection executes multiple commands and summarizes the information into an XML. This function and subsequent process gives full path to the executable and is therefore vulnerable to binary hijacking.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (2)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2021-32957",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2021-32957",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "yes"
            },
            {
              "technicalImpact": "partial"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2025-04-16T15:58:26.135784Z"
        }
      }
    ],
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:N/I:P/A:N",
          "authentication": "NONE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "LOW",
          "availabilityImpact": "NONE",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "ics-cert@hq.dhs.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 7.5,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "NONE",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 3.9
      },
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 7.5,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "NONE",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 3.9
      }
    ]
  },
  "affected": [
    {
      "source": "ics-cert@hq.dhs.gov",
      "affectedData": [
        {
          "vendor": "MDT Software",
          "product": "MDT AutoSave",
          "versions": [
            {
              "status": "affected",
              "version": "unspecified",
              "lessThan": "6.02.06",
              "versionType": "custom"
            }
          ]
        },
        {
          "vendor": "MDT Software",
          "product": "MDT AutoSave",
          "versions": [
            {
              "status": "affected",
              "version": "7.00",
              "lessThan": "7.04",
              "versionType": "custom"
            }
          ]
        },
        {
          "vendor": "MDT Software",
          "product": "AutoSave for System Platform (A4SP)",
          "versions": [
            {
              "status": "affected",
              "version": "unspecified",
              "lessThan": "4.01",
              "versionType": "custom"
            }
          ]
        },
        {
          "vendor": "MDT Software",
          "product": "A4SP",
          "versions": [
            {
              "status": "affected",
              "version": "5.00"
            }
          ]
        }
      ]
    }
  ],
  "published": "2022-04-01T23:15:09.757",
  "references": [
    {
      "url": "https://www.cisa.gov/uscert/ics/advisories/icsa-21-189-02",
      "tags": [
        "Mitigation",
        "Third Party Advisory",
        "US Government Resource"
      ],
      "source": "ics-cert@hq.dhs.gov"
    },
    {
      "url": "https://www.cisa.gov/uscert/ics/advisories/icsa-21-189-02",
      "tags": [
        "Mitigation",
        "Third Party Advisory",
        "US Government Resource"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "ics-cert@hq.dhs.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-89"
        }
      ]
    },
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-89"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "A function in MDT AutoSave versions prior to v6.02.06 is used to retrieve system information for a specific process, and this information collection executes multiple commands and summarizes the information into an XML. This function and subsequent process gives full path to the executable and is therefore vulnerable to binary hijacking."
    },
    {
      "lang": "es",
      "value": "Una función en MDT AutoSave versiones anteriores a v6.02.06, es usado para recuperar información del sistema para un proceso específico, y esta recopilación de información ejecuta múltiples comandos y resume la información en un XML. Esta función y el proceso subsiguiente dan la ruta completa al ejecutable y, por lo tanto, son vulnerables al secuestro binario"
    }
  ],
  "lastModified": "2026-06-17T03:53:52.230",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:auvesy-mdt:autosave:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "8F0612E0-E5EE-45B1-B49C-BD1296B9EACB",
              "versionEndExcluding": "6.02.06"
            },
            {
              "criteria": "cpe:2.3:a:auvesy-mdt:autosave:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "8450FA45-0C07-42D5-B817-AC990579D4F6",
              "versionEndIncluding": "7.04",
              "versionStartIncluding": "7.00"
            },
            {
              "criteria": "cpe:2.3:a:auvesy-mdt:autosave_for_system_platform:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "DDA02918-09D4-43B6-95E6-3023E3DEE57A",
              "versionEndExcluding": "4.01"
            },
            {
              "criteria": "cpe:2.3:a:auvesy-mdt:autosave_for_system_platform:5.00:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "682D5F51-4153-47C3-961C-6C5B4A124E3D"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "ics-cert@hq.dhs.gov"
}