TROYANOSYVIRUS
Retour aux CVEs

CVE-2021-35064

CRITICAL
9.8

Description

KramerAV VIAWare, all tested versions, allow privilege escalation through misconfiguration of sudo. Sudoers permits running of multiple dangerous commands, including unzip, systemctl and dpkg.

Details CVE

Score CVSS v3.19.8
SeveriteCRITICAL
Vecteur CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vecteur d'attaqueNETWORK
ComplexiteLOW
Privileges requisNONE
Interaction utilisateurNONE
Publie7/12/2021
Derniere modification11/21/2024
Sourcenvd
Observations honeypot0

Produits affectes

kramerav:viaware

Faiblesses (CWE)

CWE-269

Correlations IOC

Aucune correlation enregistree

This product uses data from the NVD API but is not endorsed or certified by the NVD.