← Zuruck zu CVEs
CVE-2021-31617
CRITICAL9.8
Beschreibung
In ASQ in Stormshield Network Security (SNS) 1.0.0 through 2.7.8, 2.8.0 through 2.16.0, 3.0.0 through 3.7.20, 3.8.0 through 3.11.8, and 4.0.1 through 4.2.2, mishandling of memory management can lead to remote code execution.
CVE Details
CVSS v3.1 Bewertung9.8
SchweregradCRITICAL
CVSS VektorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AngriffsvektorNETWORK
KomplexitatLOW
Erforderliche PrivilegienNONE
BenutzerinteraktionNONE
Veroffentlicht1/31/2022
Zuletzt geandert11/21/2024
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
stormshield:stormshield_network_security
Schwachen (CWE)
CWE-119
Referenzen
https://advisories.stormshield.eu/(cve@mitre.org)
https://advisories.stormshield.eu/2021-020/(cve@mitre.org)
https://advisories.stormshield.eu/(af854a3a-2127-422b-91ae-364da2661108)
https://advisories.stormshield.eu/2021-020/(af854a3a-2127-422b-91ae-364da2661108)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.