Weak Filesystem Permissions in HMS Ewon eCatcher through 6.6.4: A Gateway to Sensitive Data Exposure and System Disruption

Weak Filesystem Permissions in HMS Ewon eCatcher through 6.6.4: A Gateway to Sensitive Data Exposure and System Disruption

CVE-2021-33214 · MEDIUM Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H

In HMS Ewon eCatcher through 6.6.4, weak filesystem permissions could allow malicious users to access files that could lead to sensitive information disclosure, modification of configuration files, or disruption of normal system operation.

Learn more about our User Device Pen Test.