PT-2021-4634 · Mozilla+1 · Firefox+1
Abdelhamid Naceri
·
Published
2021-11-01
·
Updated
2022-04-29
·
CVE-2021-35053
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Kaspersky Endpoint Security for Windows (affected versions not specified)
Firefox (affected versions not specified)
Description
The issue is related to a possible system denial of service. An attacker could exploit this by changing specific browser parameters or files in a certain way, potentially making the system unbootable upon reboot. The vulnerability in Kaspersky Endpoint Security for Windows is associated with errors in restricting access to directory paths, which could allow an attacker to cause a denial of service during operating system loading.
Recommendations
For Kaspersky Endpoint Security for Windows, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
For Firefox, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Firefox
Kaspersky Endpoint Security For Windows