TROYANOSYVIRUS
Back to CVEs

CVE-2021-32928

CRITICAL
9.8

Description

The Sentinel LDK Run-Time Environment installer (Versions 7.6 and prior) adds a firewall rule named “Sentinel License Manager” that allows incoming connections from private networks using TCP Port 1947. While uninstalling, the uninstaller fails to close Port 1947.

CVE Details

CVSS v3.1 Score9.8
SeverityCRITICAL
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredNONE
User InteractionNONE
Published6/16/2021
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

thalesgroup:sentinel_ldk_run-time_environment

Weaknesses (CWE)

CWE-459

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.