CVE-2021-31850 is a denial-of-service vulnerability affecting McAfee Database Security (DBS) prior to version 4.8.4, specifically on Windows systems. A remote authenticated administrator can exploit this flaw by incorrectly configuring archiving via the user interface, leading to the creation of files in sensitive system directories. This misconfiguration can result in a denial-of-service condition for the DBS server or, in some cases, data destruction. The vulnerability has a CVSS score of 6.1 (Medium), indicating it can be exploited over the network with low attack complexity, requiring high privileges and user interaction, leading to high impact on integrity and availability. While the EPSS score is low, suggesting a low probability of exploitation, the FAUCET Risk Score is 32/100. Currently, there is no evidence of active exploitation, and no public exploit code is available on platforms like Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are minimal, aligning with the typical lack of attention for most vulnerabilities.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 4.8.4CPE matchmatch criteria | cpe:2.3:a:mcafee:database_security:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.