All 7 CVE vulnerabilities found in SteelCentral AppInternals Dynamic Sampling Agent, with AI-generated Chinese analysis, references, and POCs.
Vendor: Aternity
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2021-42854 | Directory Traversal Read/Write/Delete at PluginServlet CWE-20 | 9.8 | Critical | 2022-03-09 |
| CVE-2021-42856 | Reflected Cross-site Scripting at DsaDataTest CWE-20 | 4.7 | Medium | 2022-03-09 |
| CVE-2021-42787 | Directory Traversal Write/Delete/Partial Read at AgentConfigurationServlet CWE-20 | 9.4 | Critical | 2022-03-09 |
| CVE-2021-42857 | Directory Traversal Partial Write at AgentDaServlet CWE-20 | 5.3 | Medium | 2022-03-09 |
| CVE-2021-42855 | Local privilege escalation due to misconfigured write permission on .debug_command.config file CWE-284 | 7.8 | High | 2022-03-09 |
| CVE-2021-42786 | Remote Code Execution at AgentControllerServlet CWE-20 | 9.8 | Critical | 2022-03-09 |
| CVE-2021-42853 | Directory Traversal Delete/Read at AgentDiagnosticServlet CWE-20 | 9.1 | Critical | 2022-03-09 |
All 7 known CVE vulnerabilities affecting SteelCentral AppInternals Dynamic Sampling Agent with full Chinese analysis, references, and POCs where available.