PT-2022-9865 · Unknown · Hcl Versionvault Express

Published

2022-05-25

·

Updated

2022-06-08

·

CVE-2021-27779

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions VersionVault Express (affected versions not specified)
Description The issue allows an attacker to expose sensitive information, which can be used to impersonate the server or eavesdrop on communications with the server.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Encryption of Sensitive Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-27779

Affected Products

Hcl Versionvault Express