CVE-2021-45089Incorrect Authorization in Endpoint Security

Severity
5.2MEDIUMNVD
EPSS
0.1%
top 75.75%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 21
Latest updateDec 22

Description

Stormshield Endpoint Security 2.x before 2.1.2 has Incorrect Access Control.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:HExploitability: 1.5 | Impact: 3.6

Affected Packages1 packages

NVDstormshield/endpoint_security2.0.02.1.2

🔴Vulnerability Details

2
GHSA
GHSA-cqwh-gp47-j7q9: Stormshield Endpoint Security 22021-12-22
CVEList
CVE-2021-45089: Stormshield Endpoint Security 22021-12-21
CVE-2021-45089 — Incorrect Authorization | cvebase