← Back

CVE-2021-41067

nvd nist
Published: Dec 14, 2021Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.6 / Impact: 5.9
Source: NVD

Description

An issue was discovered in Listary through 6. Improper implementation of the update process leads to the download of software updates with a /check-update HTTP-based connection. This can be exploited with MITM techniques. Together with the lack of package validation, it can lead to manipulation of update packages that can cause an installation of malicious content.

Affected (1)

Products: Listary: Listary
1 product
Listary
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 6

Timeline

No history available yet.