CVE-2021-30357

Description

SSL Network Extender Client for Linux before build 800008302 reveals part of the contents of the configuration file supplied, which allows partially disclosing files to which the user did not have access.

Risk Information

Base Score
5.3
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
EPSS Score
Exploitation Probability
29.976

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2021-30357 are affected in ssl_network_extender r80.10-linuxNCM
Generation of Error Message Containing Sensitive Information Vulnerability (CVE-2021-30357)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234