9
CVSSv2

CVE-2021-25311

Published: 27/01/2021 Updated: 12/08/2021
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
CVSS v3 Base Score: 9.9 | Impact Score: 6 | Exploitability Score: 3.1
VMScore: 801
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

condor_credd in HTCondor prior to 8.9.11 allows Directory Traversal outside the SEC_CREDENTIAL_DIRECTORY_OAUTH directory, as demonstrated by creating a file under /etc that will later be executed by root.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

wisc htcondor