Known vulnerabilities in MDT AutoSave
Vendor:
MDT Software
Software:
MDT AutoSave
Software CPE:
cpe:2.3:a:mdt_software:mdt_autosave:*:*:*:*:*:*:*:*
Website:
https://www.mdt-software.com/
Total vulnerabilities:
7
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (7)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU54638 - Unrestricted Upload of File with Dangerous Type CVE-2021-32961 |
CWE-434 | Medium | 6.02.06, 7.05 | 09.07.2021 |
SB2021070906 |
||
| #VU54637 - Information Exposure Through an Error Message CVE-2021-32937 |
CWE-209 | Medium | 6.02.06, 7.05 | 09.07.2021 |
SB2021070906 |
||
| #VU54636 - Untrusted Search Path CVE-2021-32957 |
CWE-426 | Medium | 6.02.06, 7.05 | 09.07.2021 |
SB2021070906 |
||
| #VU54635 - Command injection CVE-2021-32933 |
CWE-77 | High | 6.02.06, 7.05 | 09.07.2021 |
SB2021070906 |
||
| #VU54634 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2021-32949 |
CWE-22 | Medium | 6.02.06, 7.05 | 09.07.2021 |
SB2021070906 |
||
| #VU54633 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2021-32953 |
CWE-89 | High | 6.02.06, 7.05 | 09.07.2021 |
SB2021070906 |
||
| #VU54632 - Inadequate Encryption Strength CVE-2021-32945 |
CWE-326 | Medium | 6.02.06, 7.05 | 09.07.2021 |
SB2021070906 |