Fiche vulnérabilité
CVE-2021-36794 : faille critique siren investigate (CVSS 9.8)
Description
In Siren Investigate before 11.1.4, when enabling the cluster feature of the Siren Alert application, TLS verifications are disabled globally in the Siren Investigate main process.
En bref
- Sévérité
- Critique (CVSS 9.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 2 nov. 2021
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- siren investigate