CVE-2021-33516

An issue was discovered in GUPnP before 1.0.7 and 1.1.x and 1.2.x before 1.2.5. It allows DNS rebinding. A remote web server can exploit this vulnerability to trick a victim's browser into triggering actions against local UPnP services implemented using this library. Depending on the affected service, this could be used for data exfiltration, data tempering, etc.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:gnome:gupnp:*:*:*:*:*:*:*:*
cpe:2.3:a:gnome:gupnp:*:*:*:*:*:*:*:*

Information

Published : 2021-05-24 08:15

Updated : 2021-05-28 08:41


NVD link : CVE-2021-33516

Mitre link : CVE-2021-33516


JSON object : View

Advertisement

dedicated server usa

Products Affected

gnome

  • gupnp