CVE-2021-31223: Medium severity stormshield endpoint security vulnerability
Published Jul 13, 2021
·Updated
SES Evolution before 2.1.0 allows reading some parts of a security policy by leveraging access to a computer having the administration console installed.
Affected Software
1 affected component
Stormshield Endpoint Security>=2.0.0<=2.0.2
Event History
Jul 13, 2021
CVE Published
via MITRE·01:19 PM
Data Sourced
via MITRE·01:19 PM
Description
Frequently Asked Questions
1
What is CVE-2021-31223?
CVE-2021-31223 is a vulnerability in SES Evolution before 2.1.0 that allows reading some parts of a security policy by leveraging access to a computer with the administration console installed.
2
What is the severity of CVE-2021-31223?
CVE-2021-31223 has a severity rating of medium (5.7).
3
Which software versions are affected by CVE-2021-31223?
The vulnerability affects Stormshield Endpoint Security versions 2.0.0 to 2.0.2.
4
How can the vulnerability CVE-2021-31223 be exploited?
CVE-2021-31223 can be exploited by leveraging access to a computer with the administration console installed.
5
Is there a fix available for CVE-2021-31223?
Yes, the fix for CVE-2021-31223 is available in SES Evolution 2.1.0.