CVE-2021-32022: Medium severity blackberry protect vulnerability
A low privileged delete vulnerability using CEF RPC server of BlackBerry Protect for Windows version(s) versions 1574 and earlier could allow an attacker to potentially execute code in the context of a BlackBerry Cylance service that has admin rights on the system and gaining the ability to delete data from the local system.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-32022.
What is the severity of CVE-2021-32022?
The severity of CVE-2021-32022 is medium with a severity value of 5.5.
Which version(s) of BlackBerry Protect for Windows are affected by CVE-2021-32022?
BlackBerry Protect for Windows versions 1574 and earlier are affected by CVE-2021-32022.
What is the impact of CVE-2021-32022?
CVE-2021-32022 could allow an attacker to potentially execute code in the context of a BlackBerry Cylance service that has admin rights on the system and gain the ability to delete data.
Is there a fix available for CVE-2021-32022?
Please refer to the official BlackBerry support article for information on how to fix CVE-2021-32022.