CVE-2021-27779

CRITICAL

VersionVault Express - Info Disclosure

Title source: llm
STIX 2.1

Description

VersionVault Express exposes sensitive information that an attacker can use to impersonate the server or eavesdrop on communications with the server.

Scores

CVSS v3 9.1
EPSS 0.0012
EPSS Percentile 30.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Details

CWE
CWE-311
Status published
Products (1)
hcltech/versionvault_express 2.0.1
Published May 25, 2022
Tracked Since Feb 18, 2026