CVE-2021-26909

Publication date

2021-04-23 15:35:20

Family

rapid7

State

PUBLISHED

Description

Automox Agent prior to version 31 uses an insufficiently protected S3 bucket endpoint for storing sensitive files, which could be brute-forced by an attacker to subvert an organizations security program. The issue has since been fixed in version 31 of the Automox Agent.