// For flags

CVE-2021-22517

 

Severity Score

8.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

A potential unauthorized privilege escalation vulnerability has been identified in Micro Focus Data Protector. The vulnerability affects versions 10.10, 10.20, 10.30, 10.40, 10.50, 10.60, 10.70, 10.80, 10.0 and 10.91. A privileged user may potentially misuse this feature and thus allow unintended and unauthorized access of data.

Se ha identificado una posible vulnerabilidad de escalada de privilegios no autorizada en Micro Focus Data Protector. La vulnerabilidad afecta las versiones 10.10, 10.20, 10.30, 10.40, 10.50, 10.60, 10.70, 10.80, 10.0 y 10.91. Un usuario privilegiado puede potencialmente usar inapropiadamente esta funcionalidad y permitir así un acceso no intencionado y no autorizado a los datos

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
Single
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2021-01-05 CVE Reserved
  • 2021-08-05 CVE Published
  • 2024-02-01 EPSS Updated
  • 2024-08-03 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
CAPEC
References (1)
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Microfocus
Search vendor "Microfocus"
Data Protector
Search vendor "Microfocus" for product "Data Protector"
10.0
Search vendor "Microfocus" for product "Data Protector" and version "10.0"
-
Affected
Microfocus
Search vendor "Microfocus"
Data Protector
Search vendor "Microfocus" for product "Data Protector"
10.10
Search vendor "Microfocus" for product "Data Protector" and version "10.10"
-
Affected
Microfocus
Search vendor "Microfocus"
Data Protector
Search vendor "Microfocus" for product "Data Protector"
10.20
Search vendor "Microfocus" for product "Data Protector" and version "10.20"
-
Affected
Microfocus
Search vendor "Microfocus"
Data Protector
Search vendor "Microfocus" for product "Data Protector"
10.30
Search vendor "Microfocus" for product "Data Protector" and version "10.30"
-
Affected
Microfocus
Search vendor "Microfocus"
Data Protector
Search vendor "Microfocus" for product "Data Protector"
10.40
Search vendor "Microfocus" for product "Data Protector" and version "10.40"
-
Affected
Microfocus
Search vendor "Microfocus"
Data Protector
Search vendor "Microfocus" for product "Data Protector"
10.50
Search vendor "Microfocus" for product "Data Protector" and version "10.50"
-
Affected
Microfocus
Search vendor "Microfocus"
Data Protector
Search vendor "Microfocus" for product "Data Protector"
10.60
Search vendor "Microfocus" for product "Data Protector" and version "10.60"
-
Affected
Microfocus
Search vendor "Microfocus"
Data Protector
Search vendor "Microfocus" for product "Data Protector"
10.70
Search vendor "Microfocus" for product "Data Protector" and version "10.70"
-
Affected
Microfocus
Search vendor "Microfocus"
Data Protector
Search vendor "Microfocus" for product "Data Protector"
10.80
Search vendor "Microfocus" for product "Data Protector" and version "10.80"
-
Affected
Microfocus
Search vendor "Microfocus"
Data Protector
Search vendor "Microfocus" for product "Data Protector"
10.91
Search vendor "Microfocus" for product "Data Protector" and version "10.91"
-
Affected