Vulnerabilities > CVE-2021-30110 - Unspecified vulnerability in Greyware Domain Time II
Attack vector
NETWORK Attack complexity
HIGH Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
dttray.exe in Greyware Automation Products Inc Domain Time II before 5.2.b.20210331 allows remote attackers to execute arbitrary code via a URL to a malicious update in a spoofed response to the UDP query used to check for updates.
Vulnerable Configurations
References
- https://blog.grimm-co.com/2021/04/time-for-upgrade.html
- https://blog.grimm-co.com/2021/04/time-for-upgrade.html
- https://www.greyware.com/software/domaintime/
- https://www.greyware.com/software/domaintime/
- https://www.greyware.com/software/domaintime/v5/installation/v5x.asp#currentVersion
- https://www.greyware.com/software/domaintime/v5/installation/v5x.asp#currentVersion