6.5
CVSSv3

CVE-2022-31215

Published: 20/05/2022 Updated: 01/06/2022
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

In certain Goverlan products, the Windows Firewall is temporarily turned off upon a Goverlan agent update operation. This allows remote malicious users to bypass firewall blocking rules for a time period of up to 30 seconds. This affects Goverlan Reach Console prior to 10.5.1, Reach Server prior to 3.70.1, and Reach Client Agents prior to 10.1.11.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

goverlan client agent

goverlan reach console

goverlan reach server