Access Control Flaw in Stormshield Endpoint Security by Stormshield
CVE-2021-45091

4.3MEDIUM

Key Information:

Vendor
CVE Published:
21 December 2021

What is CVE-2021-45091?

A significant access control vulnerability exists in versions 2.1.0 to 2.1.1 of Stormshield Endpoint Security. This flaw allows attackers to bypass authentication mechanisms, potentially gaining unauthorized access to sensitive components of the software. Organizations using affected versions are at risk of exploitation, leading to possible data breaches or system compromises. Immediate updates to the latest version are recommended to mitigate this risk.

References

CVSS V3.1

Score:
4.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.