Automox Agent prior to version 31 uses an insufficiently protected S3 bucket endpoint for storing sensitive files, which could be brute-forced by an attacker to subvert an organization's security program. The issue has since been fixed in version 31 of the Automox Agent.
References
Configurations
Information
Published : 2021-04-23 09:15
Updated : 2022-04-26 09:03
NVD link : CVE-2021-26909
Mitre link : CVE-2021-26909
JSON object : View
CWE
CWE-330
Use of Insufficiently Random Values
Products Affected
automox
- automox