5.5
CVSSv3

CVE-2021-32958

Published: 23/05/2022 Updated: 07/06/2022
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Successful exploitation of this vulnerability on Claroty Secure Remote Access (SRA) Site versions 3.0 up to and including 3.2 allows an attacker with local command line interface access to gain the secret key, subsequently allowing them to generate valid session tokens for the web user interface (UI). With access to the web UI an attacker can access assets managed by the SRA installation and could compromise the installation.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

claroty secure remote access