ZeroHour

CVE-2022-3512

CVSS 3.1
8.8 high
EPSS
<1%p35
Published
()
Modified
Description

Using warp-cli command "add-trusted-ssid", a user was able to disconnect WARP client and bypass the "Lock WARP switch" feature resulting in Zero Trust policies not being enforced on an affected endpoint.

Vendors
cloudflare
Products
warp
Weakness
CWE-862
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.