CVE-2021-27893Improper Privilege Management in Tectia Client

Severity
7.0HIGHNVD
EPSS
0.1%
top 84.20%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 15
Latest updateMay 24

Description

SSH Tectia Client and Server before 6.4.19 on Windows allow local privilege escalation in nonstandard conditions. ConnectSecure on Windows is affected.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.0 | Impact: 5.9

Affected Packages2 packages

NVDssh/tectia_client< 6.4.19
NVDssh/tectia_server< 6.4.19

🔴Vulnerability Details

2
GHSA
GHSA-2c9c-5m3c-vxqg: SSH Tectia Client and Server before 62022-05-24
CVEList
CVE-2021-27893: SSH Tectia Client and Server before 62021-03-15
CVE-2021-27893 — Improper Privilege Management | cvebase