« Volver al listado

CVE-2021-35975

Estado: ModificadaMedia (5.3)—

Absolute path traversal vulnerability in the Systematica SMTP Adapter component (up to v2.0.1.101) in Systematica Radius (up to v.3.9.256.777) allows remote attackers to read arbitrary files via a full pathname in GET parameter "file" in URL. Also: affected components in same product - HTTP Adapter (up to v.1.8.0.15), MSSQL MessageBus Proxy (up to v.1.1.06), Financial Calculator (up to v.1.3.05), FIX Adapter (up to v.2.4.0.25)

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (6)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2021-35975",
  "cveTags": [],
  "metrics": {
    "cvssMetricV31": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 5.3,
          "attackVector": "NETWORK",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N",
          "integrityImpact": "NONE",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "NONE",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "LOW"
        },
        "impactScore": 1.4,
        "exploitabilityScore": 3.9
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2023-11-30T22:15:07.530",
  "references": [
    {
      "url": "https://github.com/fbkcs/CVE-2021-35975",
      "tags": [
        "Exploit",
        "Third Party Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "https://github.com/fbkcs/CVE-2021-35975",
      "tags": [
        "Exploit",
        "Third Party Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-22"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Absolute path traversal vulnerability in the Systematica SMTP Adapter component (up to v2.0.1.101) in Systematica Radius (up to v.3.9.256.777) allows remote attackers to read arbitrary files via a full pathname in GET parameter \"file\" in URL. Also: affected components in same product - HTTP Adapter (up to v.1.8.0.15), MSSQL MessageBus Proxy (up to v.1.1.06), Financial Calculator (up to v.1.3.05), FIX Adapter (up to v.2.4.0.25)"
    },
    {
      "lang": "es",
      "value": "Vulnerabilidad de path traversal absoluto en el componente Systematica SMTP Adapter (hasta v2.0.1.101) en Systematica Radius (hasta v.3.9.256.777) permite a atacantes remotos leer archivos arbitrarios a través de un nombre de ruta completo en el parámetro GET \"archivo\" en URL . Además: componentes afectados en el mismo producto: Adaptador HTTP (hasta v.1.8.0.15), Proxy MSSQL MessageBus (hasta v.1.1.06), Calculadora financiera (hasta v.1.3.05), Adaptador FIX (hasta v.2.4.0.25)"
    }
  ],
  "lastModified": "2026-06-17T03:58:08.027",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:systematica:financial_calculator:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "7670A7C0-374D-49A8-ACCA-75A2E85BBBD6",
              "versionEndIncluding": "1.3.05"
            },
            {
              "criteria": "cpe:2.3:a:systematica:fix_adapter:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "17A654EA-9C84-42EB-AF76-C51E0E242415",
              "versionEndIncluding": "2.4.0.25"
            },
            {
              "criteria": "cpe:2.3:a:systematica:http_adapter:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "5CD9D4F0-F12D-4A0D-977B-765DE9968CBF",
              "versionEndIncluding": "1.8.0.15"
            },
            {
              "criteria": "cpe:2.3:a:systematica:mssql_messagebus_proxy:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "4F1F4409-1AD0-4B15-9908-A6539834F249",
              "versionEndIncluding": "1.1.06"
            },
            {
              "criteria": "cpe:2.3:a:systematica:radius:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "B53E02A6-E1A8-4414-85F1-B98C878D0780",
              "versionEndIncluding": "3.9.256.777"
            },
            {
              "criteria": "cpe:2.3:a:systematica:smtp_adapter:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "34768134-B53D-4B3C-AB35-E1A65126C39F",
              "versionEndIncluding": "2.0.1.101"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}