CVE-2021-32928

CRITICAL

Sentinel LDK Run-Time Environment <7.6 - Info Disclosure

Title source: llm
STIX 2.1

Description

The Sentinel LDK Run-Time Environment installer (Versions 7.6 and prior) adds a firewall rule named “Sentinel License Manager” that allows incoming connections from private networks using TCP Port 1947. While uninstalling, the uninstaller fails to close Port 1947.

Scores

CVSS v3 9.8
EPSS 0.0034
EPSS Percentile 56.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-459
Status published
Products (1)
thalesgroup/sentinel_ldk_run-time_environment < 7.6
Published Jun 16, 2021
Tracked Since Feb 18, 2026