CVE-2021-31585: Medium severity accellion kiteworks vulnerability
Accellion Kiteworks before 7.3.1 allows a user with Admin privileges to escalate their privileges by generating SSH passwords that allow local access.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-31585.
What is the title of this vulnerability?
The title of this vulnerability is 'Accellion Kiteworks before 7.3.1 allows a user with Admin privileges to escalate their privileges by…'
What is the description of this vulnerability?
The description of this vulnerability is 'Accellion Kiteworks before 7.3.1 allows a user with Admin privileges to escalate their privileges by generating SSH passwords that allow local access.'
What is the affected software for this vulnerability?
The affected software for this vulnerability is Accellion Kiteworks before version 7.3.1.
What is the severity of CVE-2021-31585?
The severity of CVE-2021-31585 is medium, with a CVSS score of 6.7.
How can a user with Admin privileges escalate their privileges in Accellion Kiteworks before 7.3.1?
A user with Admin privileges can escalate their privileges in Accellion Kiteworks before 7.3.1 by generating SSH passwords that allow local access.
Where can I find more information about this vulnerability?
You can find more information about this vulnerability in the Accellion CVE repository.