CVE-2021-31224Endpoint Security vulnerability

3 documents3 sources
Severity
3.5LOWNVD
EPSS
0.1%
top 78.51%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 13
Latest updateMay 24

Description

SES Evolution before 2.1.0 allows duplicating an existing security policy by leveraging access of a user having read-only access to security policies.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:NExploitability: 2.1 | Impact: 1.4

Affected Packages1 packages

NVDstormshield/endpoint_security2.0.02.0.2

🔴Vulnerability Details

2
GHSA
GHSA-26vq-f7w9-38r3: SES Evolution before 22022-05-24
CVEList
CVE-2021-31224: SES Evolution before 22021-07-13
CVE-2021-31224 — Endpoint Security vulnerability | cvebase