CVE-2021-20791 is an improper access control vulnerability in RevoWorks Browser versions 2.1.230 and earlier. It allows an attacker to bypass security restrictions and transfer unauthorized files between the local and isolated browser environments through unspecified means. This vulnerability is rated Critical with a CVSS score of 9.3, indicating a network-exploitable flaw with low attack complexity, leading to high confidentiality impact and low integrity impact. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 2.1.197, <= 2.1.230CPE matchmatch criteria | cpe:2.3:a:jscom:revoworks_browser:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.