Known vulnerabilities in Accellion FTA
Vendor:
Kiteworks
Software:
Accellion FTA
Software CPE:
cpe:2.3:a:kiteworks:fta:*:*:*:*:*:*:*:*
Website:
https://www.kiteworks.com/
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
5
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU50789 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2021-27104 |
CWE-78 | High | 9_12_380 | 18.02.2021 |
SB2021021801 |
||
| #VU50788 - Server-Side Request Forgery (SSRF) CVE-2021-27103 |
CWE-918 | Medium | 9_12_416 | 18.02.2021 |
SB2021021803 |
||
| #VU50787 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2021-27102 |
CWE-78 | High | 9_12_416 | 18.02.2021 |
SB2021021802 |
||
| #VU50786 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2021-27101 |
CWE-89 | High | 9_12_380 | 18.02.2021 |
SB2021021801 |
||
| #VU50661 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') |
CWE-89 | Critical | - | 12.02.2021 |
SB2021021204 |