CVE-2021-27700

HIGH

SOCIFI Socifi Guest - Privilege Escalation

Title source: llm
STIX 2.1

Description

SOCIFI Socifi Guest wifi as SAAS wifi portal is affected by Insecure Permissions. Any authorized customer with partner mode can switch to another customer dashboard and perform actions like modify user, delete user, etc.

Scores

CVSS v3 7.6
EPSS 0.0013
EPSS Percentile 31.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-639
Status published
Published Nov 12, 2024
Tracked Since Feb 18, 2026