VYPR
High severity8.8NVD Advisory· Published Aug 5, 2021· Updated Jun 17, 2026

CVE-2021-22517

CVE-2021-22517

Description

A potential unauthorized privilege escalation vulnerability has been identified in Micro Focus Data Protector. The vulnerability affects versions 10.10, 10.20, 10.30, 10.40, 10.50, 10.60, 10.70, 10.80, 10.0 and 10.91. A privileged user may potentially misuse this feature and thus allow unintended and unauthorized access of data.

Affected products

12
  • Microfocus/Data Protectorllm-create2 versions
    10.0, 10.10, 10.20, 10.30, 10.40, 10.50, 10.60, 10.70, 10.80, 10.91+ 1 more
    • (no CPE)range: 10.0, 10.10, 10.20, 10.30, 10.40, 10.50, 10.60, 10.70, 10.80, 10.91
    • (no CPE)
  • cpe:2.3:a:microfocus:data_protector:10.0:*:*:*:*:*:*:*+ 9 more
    • cpe:2.3:a:microfocus:data_protector:10.0:*:*:*:*:*:*:*
    • cpe:2.3:a:microfocus:data_protector:10.10:*:*:*:*:*:*:*
    • cpe:2.3:a:microfocus:data_protector:10.20:*:*:*:*:*:*:*
    • cpe:2.3:a:microfocus:data_protector:10.30:*:*:*:*:*:*:*
    • cpe:2.3:a:microfocus:data_protector:10.40:*:*:*:*:*:*:*
    • cpe:2.3:a:microfocus:data_protector:10.50:*:*:*:*:*:*:*
    • cpe:2.3:a:microfocus:data_protector:10.60:*:*:*:*:*:*:*
    • cpe:2.3:a:microfocus:data_protector:10.70:*:*:*:*:*:*:*
    • cpe:2.3:a:microfocus:data_protector:10.80:*:*:*:*:*:*:*
    • cpe:2.3:a:microfocus:data_protector:10.91:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.