First published: Mon Jan 31 2022(Updated: )
Stormshield Network Security (SNS) before 4.2.2 allows a read-only administrator to gain privileges via CLI commands.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Stormshield Network Security | >=2.5.0<2.7.9 | |
Stormshield Network Security | >=2.8.0<3.7.21 | |
Stormshield Network Security | >=3.8.0<3.11.9 | |
Stormshield Network Security | >=4.0.0<4.2.2 | |
Stormshield Stormshield Network Security | >=2.5.0<2.7.9 | |
Stormshield Stormshield Network Security | >=2.8.0<3.7.21 | |
Stormshield Stormshield Network Security | >=3.8.0<3.11.9 | |
Stormshield Stormshield Network Security | >=4.0.0<4.2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-28962 is a vulnerability in Stormshield Network Security (SNS) before 4.2.2 that allows a read-only administrator to gain privileges via CLI commands.
CVE-2021-28962 has a severity level of 7.2, which is considered high.
The affected software versions include Stormshield Network Security 2.5.0 to 2.7.9, 2.8.0 to 3.7.21, 3.8.0 to 3.11.9, and 4.0.0 to 4.2.2.
A read-only administrator can gain privileges through CVE-2021-28962 by exploiting CLI commands.
You can find more information about CVE-2021-28962 in the advisories provided by Stormshield at their official website.