CVE-2021-36781

Scores

EPSS

0.000none0.0%
0%20%40%60%80%100%

Percentile: 0.0%

CVSS

4.4medium3.x
0246810

CVSS Score: 4.4/10

All CVSS Scores

CVSS 3.x
4.4

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L

CVSS 2.0
3.6

Vector: AV:L/AC:L/Au:N/C:N/I:P/A:P

Description

A Incorrect Default Permissions vulnerability in the parsec package of openSUSE Factory allows local attackers to imitate the service leading to DoS or clients talking to an imposter service. This issue affects: openSUSE Factory parsec versions prior to 0.8.1-1.1.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

CWEs

CWE-276

Vulnerable Software (1)

Type: Configuration

Vendor: opensuse

Product: factory

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:opensuse:factory:*:*:*:*:*:*:*:*",      "versionEndExcluding": "0.8.1-1.1",      "vulnerable": true    }  ],  "operator": "OR"}

Source: nvd