CVE-2021-25270: High severity sophos hitmanpro.alert vulnerability
Published Oct 7, 2021
·Updated
A local attacker could execute arbitrary code with administrator privileges in HitmanPro.Alert before version Build 901.
Affected Software
1 affected component
Sophos HitmanPro.Alert<901
Event History
Oct 7, 2021
CVE Published
via MITRE·11:11 PM
Data Sourced
via MITRE·11:11 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-25270.
2
What is the severity of CVE-2021-25270?
The severity of CVE-2021-25270 is high with a severity value of 6.7.
3
How can a local attacker exploit CVE-2021-25270?
A local attacker can exploit CVE-2021-25270 to execute arbitrary code with administrator privileges in HitmanPro.Alert before version Build 901.
4
Which software versions are affected by CVE-2021-25270?
The software version affected by CVE-2021-25270 is HitmanPro.Alert before version Build 901.
5
Is there a fix available for CVE-2021-25270?
Yes, a fix is available for CVE-2021-25270. Please refer to the vendor's security advisory for more information.