VYPR
Medium severity4.4NVD Advisory· Published Nov 26, 2021· Updated Jun 17, 2026

CVE-2021-25269

CVE-2021-25269

Description

A local administrator could prevent the HMPA service from starting despite tamper protection using an unquoted service path vulnerability in the HMPA component of Sophos Intercept X Advanced and Sophos Intercept X Advanced for Server before version 2.0.23, as well as Sophos Exploit Prevention before version 3.8.3.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

8
  • cpe:2.3:a:sophos:exploit_prevention:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:sophos:exploit_prevention:*:*:*:*:*:*:*:*range: <3.8.3
    • (no CPE)range: <3.8.3
    • (no CPE)range: unspecified
  • cpe:2.3:a:sophos:intercept_x_endpoint:*:*:*:*:*:*:*:*
    Range: <2.0.23
  • cpe:2.3:a:sophos:intercept_x_for_server:*:*:*:*:*:*:*:*
    Range: <2.0.23
  • Sophos/Intercept X Advancedllm-fuzzy3 versions
    <2.0.23+ 2 more
    • (no CPE)range: <2.0.23
    • (no CPE)range: unspecified
    • (no CPE)range: unspecified

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.