CVE-2021-31221: Medium severity stormshield endpoint security vulnerability
Published Jul 13, 2021
·Updated
SES Evolution before 2.1.0 allows deleting some parts of a security policy by leveraging access to a computer having the administration console installed.
Affected Software
1 affected component
Stormshield Endpoint Security>=2.0.0<=2.0.2
Event History
Jul 13, 2021
CVE Published
via MITRE·01:31 PM
Data Sourced
via MITRE·01:31 PM
Description
Frequently Asked Questions
1
What is CVE-2021-31221?
CVE-2021-31221 is a vulnerability in SES Evolution before version 2.1.0 that allows deleting some parts of a security policy by leveraging access to a computer with the administration console installed.
2
How severe is CVE-2021-31221?
CVE-2021-31221 has a severity score of 5.7 (medium).
3
Which software versions are affected by CVE-2021-31221?
CVE-2021-31221 affects Stormshield Endpoint Security versions between 2.0.0 and 2.0.2 (inclusive).
4
How can I fix CVE-2021-31221?
To fix CVE-2021-31221, upgrade to SES Evolution version 2.1.0 or later.
5
Where can I find more information about CVE-2021-31221?
You can find more information about CVE-2021-31221 in the advisory available at https://advisories.stormshield.eu/2021-023/.