PT-2022-18512 · Forcepoint · Forcepoint One Endpoint

Mr.D0X

·

Published

2022-04-04

·

Updated

2022-04-13

·

CVE-2022-27608

CVSS v3.1

6.0

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions Forcepoint One Endpoint versions prior to 22.01
Description The issue allows users with Administrator privileges to tamper with registry keys, potentially disabling anti-tampering mechanisms. This could enable a user to disable Forcepoint One Endpoint and the protection it offers.
Recommendations For versions prior to 22.01, update to version 22.01 or later to resolve the issue. As a temporary workaround, consider restricting Administrator privileges to minimize the risk of exploitation.

Fix

Incorrect Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-27608

Affected Products

Forcepoint One Endpoint