← Back to browse · API

CVE-2021-42786

Severity
CRITICAL
CVSS
9.8
EPSS
0.02086
Risk score
39.93
CISA KEV
No
PoC
No
Published
2022-03-09
Modified
2024-09-17
First seen
2026-08-07
Aliases
EUVD-2021-29742, GHSA-5MV9-9MFH-FM86
Products
Aternity:SteelCentral AppInternals Dynamic Sampling Agent 10.x, Aternity:SteelCentral AppInternals Dynamic Sampling Agent 11.8.8 <11.8.8, Aternity:SteelCentral AppInternals Dynamic Sampling Agent 12.13.0 <12.13.0
Sources
euvd EUVD-2021-29742

Description

It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent (DSA) has Remote Code Execution vulnerabilities in multiple instances of the API requests. The affected endpoints do not have any input validation of the user's input that allowed a malicious payload to be injected.

References