First published: Mon Apr 04 2022(Updated: )
Forcepoint One Endpoint prior to version 22.01 installed on Microsoft Windows is vulnerable to registry key tampering by users with Administrator privileges. This could result in a user disabling anti-tampering mechanisms which would then allow the user to disable Forcepoint One Endpoint and the protection offered by it.
Credit: psirt@forcepoint.com
Affected Software | Affected Version | How to fix |
---|---|---|
Forcepoint One Endpoint | <22.01 |
Upgrade Forcepoint One Endpoint to version 22.01 or later.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-27608 is a vulnerability in Forcepoint One Endpoint prior to version 22.01 installed on Microsoft Windows that allows registry key tampering by users with Administrator privileges.
The CVE-2022-27608 vulnerability allows users with Administrator privileges to tamper with registry keys, potentially disabling anti-tampering mechanisms and allowing them to disable Forcepoint One Endpoint and its protection.
The severity of CVE-2022-27608 is classified as medium (6) based on the CVSS score.
Yes, Forcepoint One Endpoint prior to version 22.01 is affected by CVE-2022-27608.
To mitigate the CVE-2022-27608 vulnerability, it is recommended to update Forcepoint One Endpoint to version 22.01 or later.