CVE-2021-32928
CRITICALSentinel LDK Run-Time Environment <7.6 - Info Disclosure
Title source: llmDescription
The Sentinel LDK Run-Time Environment installer (Versions 7.6 and prior) adds a firewall rule named “Sentinel License Manager” that allows incoming connections from private networks using TCP Port 1947. While uninstalling, the uninstaller fails to close Port 1947.
Scores
CVSS v3
9.8
EPSS
0.0034
EPSS Percentile
56.7%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-459
Status
published
Products (1)
thalesgroup/sentinel_ldk_run-time_environment
< 7.6
Published
Jun 16, 2021
Tracked Since
Feb 18, 2026