CRITICAL
CVE-2021-22941
CVSS
9.8
KEV
Description
Improper Access Control in Citrix ShareFile storage zones controller before 5.11.20 may allow an unauthenticated attacker to remotely compromise the storage zones controller.
Summary dbcve.org
Improper Access Control vulnerability in Citrix ShareFile storage zones controller versions prior to 5.11.20 allows an unauthenticated attacker to remotely compromise the storage zones controller due to missing or inadequate access control checks.
Mitigation
Upgrade Citrix ShareFile storage zones controller to version 5.11.20 or later to remediate the improper access control vulnerability.
Weakness (CWE)
CWE-284
Improper Access Control
EPSS Score
53.59%
Probability of exploitation in next 30 days
99th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.