HomeMcafeeCVE-2021-31850

CVE-2021-31850

MEDIUM
6.1CVSS
Published: 2021-12-08
Updated: 2024-11-21
AI Analysis

Description

A denial-of-service vulnerability in Database Security (DBS) prior to 4.8.4 allows a remote authenticated administrator to trigger a denial-of-service attack against the DBS server. The configuration of Archiving through the User interface incorrectly allowed the creation of directories and files in Windows system directories and other locations where sensitive data could be overwritten. The former could lead to a DoS, whilst the latter could lead to data destruction on the DBS server.

CVSS Metrics

Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:H
Attack Vector
network
Complexity
low
Privileges
high
User Action
required
Scope
unchanged
Confidentiality
none
Integrity
high
Availability
high
Weaknesses
CWE-552CWE-552

Metadata

Primary Vendor
MCAFEE
Published
12/8/2021
Last Modified
11/21/2024
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

mcafee : database_security

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2021-31850 | MEDIUM Severity | CVEDatabase.com | CVEDatabase.com