CVE Vulnerabilities

CVE-2021-22517

Published: Aug 05, 2021 | Modified: Nov 07, 2023
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

A potential unauthorized privilege escalation vulnerability has been identified in Micro Focus Data Protector. The vulnerability affects versions 10.10, 10.20, 10.30, 10.40, 10.50, 10.60, 10.70, 10.80, 10.0 and 10.91. A privileged user may potentially misuse this feature and thus allow unintended and unauthorized access of data.

Affected Software

Name Vendor Start Version End Version
Data_protector Microfocus 10.0 (including) 10.0 (including)
Data_protector Microfocus 10.10 (including) 10.10 (including)
Data_protector Microfocus 10.20 (including) 10.20 (including)
Data_protector Microfocus 10.30 (including) 10.30 (including)
Data_protector Microfocus 10.40 (including) 10.40 (including)
Data_protector Microfocus 10.50 (including) 10.50 (including)
Data_protector Microfocus 10.60 (including) 10.60 (including)
Data_protector Microfocus 10.70 (including) 10.70 (including)
Data_protector Microfocus 10.80 (including) 10.80 (including)
Data_protector Microfocus 10.91 (including) 10.91 (including)

References