Vulnerabilities > CVE-2021-29662 - Incorrect Type Conversion or Cast vulnerability in multiple products

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
HIGH
Availability impact
NONE
network
low complexity
data
netapp
CWE-704

Summary

The Data::Validate::IP module through 0.29 for Perl does not properly consider extraneous zero characters at the beginning of an IP address string, which (in some situations) allows attackers to bypass access control that is based on IP addresses.

Vulnerable Configurations

Part Description Count
Application
Data\
16
Application
Netapp
1

Common Weakness Enumeration (CWE)