CVE-2021-36921

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
12/08/2021
Last modified:
24/08/2021

Description

AIMANAGER before B115 on MONITORAPP Application Insight Web Application Firewall (AIWAF) devices with Manager 2.1.0 has Improper Authentication. An attacker can gain administrative access by modifying the response to an authentication check request.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:monitorapp:application_insight_manager:*:*:*:*:*:*:*:* b107 (including) b115 (excluding)
cpe:2.3:a:monitorapp:application_insight_web_application_firewall:-:*:*:*:*:*:*:*