Medium severity6.5NVD Advisory· Published May 20, 2022· Updated Jun 17, 2026
CVE-2022-31215
CVE-2022-31215
Description
In certain Goverlan products, the Windows Firewall is temporarily turned off upon a Goverlan agent update operation. This allows remote attackers to bypass firewall blocking rules for a time period of up to 30 seconds. This affects Goverlan Reach Console before 10.5.1, Reach Server before 3.70.1, and Reach Client Agents before 10.1.11.
Affected products
7cpe:2.3:a:goverlan:reach_console:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:goverlan:reach_console:*:*:*:*:*:*:*:*range: <10.5.1
- (no CPE)range: <10.5.1
cpe:2.3:a:goverlan:reach_server:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:goverlan:reach_server:*:*:*:*:*:*:*:*range: <3.70.1
- (no CPE)range: <3.70.1
- Goverlan/Goverlan Reach Consoledescription
- Range: <10.1.11
Patches
Vulnerability mechanics
References
2- www.goverlan.com/knowledge/article/security-advisory-govsa-2022-0506-1-disable-windows-firewall/nvdExploitVendor Advisory
- goverlan.comnvdVendor Advisory
News mentions
0No linked articles in our index yet.