Improper access control in SecureWatch Managed Services - CVE-2021-38137
Published: August 9, 2021
SecureWatch Managed Services
Corero
Description
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to the affected product does not correctly check swa-monitor and cns-monitor user’s privileges. A remote authenticated attacker can perform privileged operations and gain access to reserved information.