← Back to CVE List
Vulnerability Intelligence Report

CVE-2021-22932

An issue has been identified in the CTX269106 mitigation tool for Citrix ShareFile storage zones controller which causes the ShareFile file encryption option to become disabled if it had previously been enabled. Customers are only affected by this issue if they previously selected “Enable Encryption” in the ShareFile configuration page and did not re-select this setting after running the CTX269106 mitigation tool. ShareFile customers who have not run the CTX269106 mitigation tool or who re-selected “Enable Encryption” immediately after running the tool are unaffected by this issue.

No Active Exploit Signals
CVSS Base Score
7.5
HIGH
EPSS Probability:0.41%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Weaknesses (CWE)

CWE-311 ↗Missing Encryption of Sensitive Data (CWE-311)

Affected Products & Versions

Vendor Product Affected Versions
citrix sharefile_storagezones_controller all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
0.411%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityHackerOne · Bug Bounty Provider · USA
Reserved2021-01-06T00:00:00
Published2021-08-16T18:38:51
Last Updated2024-08-03T18:58:26

LINK COPIED TO CLIPBOARD