CVE-2021-27932: High severity stormshield ssl vpn vulnerability
Published Aug 25, 2023
·Updated
Stormshield Network Security (SNS) VPN SSL Client 2.1.0 through 2.8.0 has Insecure Permissions.
Affected Software
1 affected component
Stormshield SSL VPN Client>=2.1.0<=3.0.0
Event History
Aug 25, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-27932.
2
What is the affected software?
The affected software is Stormshield Network Security (SNS) VPN SSL Client version 2.1.0 through 2.8.0.
3
What is the severity of CVE-2021-27932?
The severity of CVE-2021-27932 is high with a CVSS score of 7.8.
4
What are the references for this vulnerability?
The references for this vulnerability are: [Stormshield Advisories](https://advisories.stormshield.eu) and [Advisory 2021-004](https://advisories.stormshield.eu/2021-004/).
5
How do I fix the vulnerability in Stormshield Network Security (SNS) VPN SSL Client?
To fix the vulnerability, update Stormshield Network Security (SNS) VPN SSL Client to version 3.0.0 or later.