9.8
CVSSv3

CVE-2021-28235

Published: 04/04/2023 Updated: 11/04/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Authentication vulnerability found in Etcd-io v.3.4.10 allows remote malicious users to escalate privileges via the debug function.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

etcd etcd 3.4.10

Vendor Advisories

Debian Bug report logs - #1034840 etcd: CVE-2021-28235 Package: src:etcd; Maintainer for src:etcd is Debian Go Packaging Team <team+pkg-go@trackerdebianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Tue, 25 Apr 2023 18:57:02 UTC Severity: important Tags: security, upstream Reply or subscribe to ...
Synopsis Important: Red Hat OpenStack Platform 170 (etcd) security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for etcd is now available for Red Hat OpenStack Platform 170(Wallaby)Red Hat Product S ...
Synopsis Important: Red Hat OpenStack Platform 161 (etcd) security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for etcd is now available for Red Hat OpenStack Platform 161(Train)Red Hat Product Sec ...
Synopsis Important: Red Hat OpenStack Platform 162 (etcd) security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for etcd is now available for Red Hat OpenStack Platform 162(Train)Red Hat Product Sec ...
Description<!----> This CVE is under investigation by Red Hat Product Security ...