In MB connect line mbDIALUP versions <= 3.9R0.0 a remote attacker can send a specifically crafted HTTP request to the service running with NT AUTHORITY\SYSTEM that will not correctly validate the input. This can lead to an arbitrary code execution with the privileges of the service.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://cert.vde.com/de-de/advisories/vde-2021-017 |
![]() ![]() |
History
No history.

Status: PUBLISHED
Assigner: CERTVDE
Published:
Updated: 2024-09-16T17:42:36.084Z
Reserved: 2021-05-24T00:00:00
Link: CVE-2021-33527

No data.

Status : Modified
Published: 2021-08-02T11:15:11.287
Modified: 2024-11-21T06:09:00.660
Link: CVE-2021-33527

No data.