CVE-2021-32933

CWE-77 COMMAND INJECTION:
An attacker could leverage an API to pass along a malicious file that could then manipulate the process creation command line and run a command line argument. This could then be leveraged to run a malicious process.

Risk Information

  • CVE ID
  • CVE-2021-32933
  • Vendor
  • MDT Software
  • Product
  • AutoSave
  • CVSS v3
  • 10