VDB
CVE-2021-44216
CVE-2021-44216
PUBLISHED
CVSS 5.5 MEDIUM
Northern.tech CFEngine Enterprise before 3.15.5 and 3.18.x before 3.18.1 has Insecure Permissions that may allow unauthorized local users to access the Apache and Mission Portal log files.
EPSS 0.37% · 29.2th percentile
Risk Scores
CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.37%
29.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| northern.tech | cfengine | 0, 3.18.0 |
Timeline
- Mar 7, 2022 CVE Published
- Mar 8, 2022 EPSS Score
- Apr 29, 2022 EPSS Score
- Jun 19, 2022 EPSS Score
- Aug 11, 2022 EPSS Score
- Oct 1, 2022 EPSS Score
- Nov 22, 2022 EPSS Score
- Jan 12, 2023 EPSS Score
- Mar 5, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 25, 2023 EPSS Score
- Jun 16, 2023 EPSS Score