CVE-2021-29655: Critical severity pexip infinity connect vulnerability
Published Feb 18, 2022
·Updated
Pexip Infinity Connect before 1.8.0 omits certain provisioning authenticity checks. Thus, untrusted code may execute.
Affected Software
1 affected component
Pexip Infinity Connect<1.8.0
Event History
Feb 18, 2022
CVE Published
via MITRE·09:44 PM
Data Sourced
via MITRE·09:44 PM
Description
Frequently Asked Questions
1
What is CVE-2021-29655?
CVE-2021-29655 is a vulnerability in Pexip Infinity Connect before version 1.8.0 that allows untrusted code to execute due to the omission of certain provisioning authenticity checks.
2
How severe is CVE-2021-29655?
CVE-2021-29655 has a severity rating of 9.8, which is considered critical.
3
What software is affected by CVE-2021-29655?
Pexip Infinity Connect versions up to and excluding 1.8.0 are affected by CVE-2021-29655.
4
How can I fix CVE-2021-29655?
To fix CVE-2021-29655, users are advised to update Pexip Infinity Connect to version 1.8.0 or later.
5
Are there any additional references for CVE-2021-29655?
Yes, you can find additional information about CVE-2021-29655 in the security bulletins on the Pexip documentation website.