Back to Database
Status published
Low
CVE-2021-37468
NCH Reflect CRM 3.01 allows local users to discover cleartext...
Vulnerability Description
NCH Reflect CRM 3.01 allows local users to discover cleartext user account information by reading the configuration files.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-37468
Credits & Attribution
No credits recorded in the NVD database.
References
More from nch
View All →CVE-2021-37469
In NCH WebDictate v2.13 and earlier, authenticated users can abuse...
Medium
6.5
CVE-2021-37452
NCH Quorum v2.03 and earlier allows local users to discover...
Medium
5.5
CVE-2021-37441
NCH Axon PBX v2.22 and earlier allows path traversal for...
High
8.8
CVE-2021-37440
NCH Axon PBX v2.22 and earlier allows path traversal for...
Medium
6.5
CVE-2021-37439
NCH FlexiServer v6.00 suffers from a syslog?file=/.. path traversal vulnerability....
Medium
6.5
Affected Vendor
Affected Software
reflect customer relationship management
Vulnerable Versions:
0
Timeline
Official Publish:
July 25th, 2021
Last Modified:
August 4th, 2024
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.