6.5
CVE-2022-31215
- EPSS 0.33%
- Veröffentlicht 20.05.2022 12:15:11
- Zuletzt bearbeitet 21.11.2024 07:04:09
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
In certain Goverlan products, the Windows Firewall is temporarily turned off upon a Goverlan agent update operation. This allows remote attackers to bypass firewall blocking rules for a time period of up to 30 seconds. This affects Goverlan Reach Console before 10.5.1, Reach Server before 3.70.1, and Reach Client Agents before 10.1.11.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Goverlan ≫ Client Agent Version < 10.1.11
Goverlan ≫ Reach Console Version < 10.5.1
Goverlan ≫ Reach Server Version < 3.70.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.33% | 0.551 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.5 | 2.8 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
|
| nvd@nist.gov | 3.5 | 6.8 | 2.9 |
AV:N/AC:M/Au:S/C:N/I:P/A:N
|