PT-2021-4634 · Mozilla+1 · Firefox+1

Abdelhamid Naceri

·

Published

2021-11-01

·

Updated

2022-04-29

·

CVE-2021-35053

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Kaspersky Endpoint Security for Windows (affected versions not specified) Firefox (affected versions not specified)
Description The issue is related to a possible system denial of service. An attacker could exploit this by changing specific browser parameters or files in a certain way, potentially making the system unbootable upon reboot. The vulnerability in Kaspersky Endpoint Security for Windows is associated with errors in restricting access to directory paths, which could allow an attacker to cause a denial of service during operating system loading.
Recommendations For Kaspersky Endpoint Security for Windows, at the moment, there is no information about a newer version that contains a fix for this vulnerability. For Firefox, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-05323
CVE-2021-35053
ZDI-21-1280
ZDI-22-431

Affected Products

Firefox
Kaspersky Endpoint Security For Windows