Security Advisory

CVE-2021-26909

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-04-23 15:35:20
Last updated 2024-09-16 22:52:05
Assigner rapid7
State PUBLISHED

Description

Automox Agent prior to version 31 uses an insufficiently protected S3 bucket endpoint for storing sensitive files, which could be brute-forced by an attacker to subvert an organizations security program. The issue has since been fixed in version 31 of the Automox Agent.