CVE-2021-28130: High severity drweb web security space vulnerability
Published Sep 24, 2021
·Updated
Dr.Web Firewall 12.5.2.4160 on Windows incorrectly restricts applications signed by Dr.Web. A DLL for a custom payload within a legitimate binary (e.g., frwlsvc.exe) bypasses firewall filters.
Affected Software
2 affected components
DrWeb Security Space=12.5.2.4160
Microsoft Windows
Event History
Sep 24, 2021
CVE Published
via MITRE·03:27 PM
Data Sourced
via MITRE·03:27 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-28130?
CVE-2021-28130 is rated as a high severity vulnerability due to its potential to bypass firewall protections.
2
How do I fix CVE-2021-28130?
To fix CVE-2021-28130, update Dr.Web Firewall to the latest version that addresses this vulnerability.
3
What are the risks associated with CVE-2021-28130?
The risks associated with CVE-2021-28130 include the potential for unauthorized applications to bypass security controls and execute malicious actions.
4
What applications are affected by CVE-2021-28130?
CVE-2021-28130 affects Dr.Web Firewall version 12.5.2.4160 on Windows systems.
5
Is CVE-2021-28130 exploitable remotely?
CVE-2021-28130 is not specifically stated as exploitable remotely, focusing instead on local application execution.