CVE Vulnerabilities

CVE-2022-31215

Published: May 20, 2022 | Modified: Jun 01, 2022
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
3.5 LOW
AV:N/AC:M/Au:S/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

In certain Goverlan products, the Windows Firewall is temporarily turned off upon a Goverlan agent update operation. This allows remote attackers to bypass firewall blocking rules for a time period of up to 30 seconds. This affects Goverlan Reach Console before 10.5.1, Reach Server before 3.70.1, and Reach Client Agents before 10.1.11.

Affected Software

Name Vendor Start Version End Version
Client_agent Goverlan * 10.1.11 (excluding)
Reach_console Goverlan * 10.5.1 (excluding)
Reach_server Goverlan * 3.70.1 (excluding)

References