CVE-2021-25271: Medium severity sophos hitmanpro vulnerability
Published Oct 7, 2021
·Updated
A local attacker could read or write arbitrary files with administrator privileges in HitmanPro before version Build 318.
Affected Software
1 affected component
Sophos hitmanpro<318
Event History
Oct 7, 2021
CVE Published
via MITRE·11:11 PM
Data Sourced
via MITRE·11:11 PM
Description
Frequently Asked Questions
1
What is CVE-2021-25271?
CVE-2021-25271 is a vulnerability that allows a local attacker to read or write arbitrary files with administrator privileges in HitmanPro before version Build 318.
2
What is the severity of CVE-2021-25271?
The severity of CVE-2021-25271 is medium with a severity value of 6.
3
How can a local attacker exploit CVE-2021-25271?
A local attacker can exploit CVE-2021-25271 by leveraging administrator privileges in HitmanPro before version Build 318 to read or write arbitrary files.
4
What software versions are affected by CVE-2021-25271?
HitmanPro before version Build 318 is affected by CVE-2021-25271.
5
How can I fix CVE-2021-25271?
To fix CVE-2021-25271, update HitmanPro to version Build 318 or later.