A tampering vulnerability in the CylanceOPTICS Windows Installer Package of CylanceOPTICS for Windows version 3.2 and 3.3 could allow an attacker to potentially uninstall CylanceOPTICS from a system thereby leaving it with only the protection of CylancePROTECT.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 22 Nov 2024 12:00:00 +0000

Type Values Removed Values Added
References

Tue, 20 Aug 2024 20:30:00 +0000

Type Values Removed Values Added
First Time appeared Blackberry
Blackberry cylanceoptics
CPEs cpe:2.3:a:blackberry:cylanceoptics:*:*:*:*:*:*:*:*
Vendors & Products Blackberry
Blackberry cylanceoptics
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 20 Aug 2024 17:45:00 +0000

Type Values Removed Values Added
Description A tampering vulnerability in the CylanceOPTICS Windows Installer Package of CylanceOPTICS for Windows version 3.2 and 3.3 could allow an attacker to potentially uninstall CylanceOPTICS from a system thereby leaving it with only the protection of CylancePROTECT.
Title Vulnerability in CylanceOPTICS Windows Installer Package Impacts CylanceOPTICS for Windows
Weaknesses CWE-288
References
Metrics cvssV4_0

{'score': 7.1, 'vector': 'CVSS:4.0/AV:L/AC:H/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: blackberry

Published:

Updated: 2024-09-29T05:02:37.739Z

Reserved: 2024-05-13T21:20:04.327Z

Link: CVE-2024-35214

cve-icon Vulnrichment

Updated: 2024-09-29T05:02:37.739Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-08-20T18:15:08.497

Modified: 2024-11-21T09:19:57.420

Link: CVE-2024-35214

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.