5.5
CVSSv2

CVE-2021-45101

Published: 16/12/2021 Updated: 08/08/2023
CVSS v2 Base Score: 5.5 | Impact Score: 4.9 | Exploitability Score: 8
CVSS v3 Base Score: 8.1 | Impact Score: 5.2 | Exploitability Score: 2.8
VMScore: 490
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:N

Vulnerability Summary

An issue exists in HTCondor prior to 8.8.15, 9.0.x prior to 9.0.4, and 9.1.x prior to 9.1.2. Using standard command-line tools, a user with only READ access to an HTCondor SchedD or Collector daemon can discover secrets that could allow them to control other users' jobs and/or read their data.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

wisc htcondor

wisc htcondor 9.1.0

Vendor Advisories

Debian Bug report logs - #1002540 condor: CVE-2021-45101 Package: src:condor; Maintainer for src:condor is HTCondor Developers <condor-debian@cswiscedu>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Thu, 23 Dec 2021 21:03:02 UTC Severity: grave Tags: security, upstream Found in version condor/868~ ...