CVE Vulnerabilities

CVE-2021-32017

Published: Aug 03, 2021 | Modified: Aug 12, 2021
CVSS 3.x
7.7
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

An issue was discovered in JUMP AMS 3.6.0.04.009-2487. A JUMP SOAP endpoint permitted the listing of the content of the remote file system. This can be used to identify the complete server filesystem structure, i.e., identifying all the directories and files.

Affected Software

Name Vendor Start Version End Version
Asset_management Jump-technology 3.6.0.04.009-2487 (including) 3.6.0.04.009-2487 (including)

References