VDB

CVE-2021-2167

CVE-2021-2167 PUBLISHED CVSS 7.800000190734863 HIGH

Vulnerability in the Oracle Solaris product of Oracle Systems (component: Common Desktop Environment). The supported version that is affected is 10. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. Successful attacks of this vulnerability can result in takeover of Oracle Solaris. CVSS 3.1 Base Score 7.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).

EPSS 0.05% · 16.4th percentile

Risk Scores

CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.05%
16.4th percentile

Affected Products

VendorProductVersions
Oracle CorporationSolaris Operating System10
oraclesolaris10

Timeline

  • Sep 17, 2020 PoC Published
  • Oct 3, 2020 PoC Published
  • Apr 21, 2021 CVE Published
  • Apr 27, 2021 EPSS Score
  • Jun 30, 2021 EPSS Score
  • Aug 31, 2021 EPSS Score
  • Nov 2, 2021 EPSS Score
  • Jan 3, 2022 EPSS Score
  • Mar 6, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • May 7, 2022 EPSS Score
  • Jul 8, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›