VDB

CVE-2021-44216

CVE-2021-44216 PUBLISHED CVSS 5.5 MEDIUM

Northern.tech CFEngine Enterprise before 3.15.5 and 3.18.x before 3.18.1 has Insecure Permissions that may allow unauthorized local users to access the Apache and Mission Portal log files.

EPSS 0.37% · 29.2th percentile

Risk Scores

CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.37%
29.2th percentile

Affected Products

VendorProductVersions
n/an/an/a
northern.techcfengine0, 3.18.0

Timeline

  • Mar 7, 2022 CVE Published
  • Mar 8, 2022 EPSS Score
  • Apr 29, 2022 EPSS Score
  • Jun 19, 2022 EPSS Score
  • Aug 11, 2022 EPSS Score
  • Oct 1, 2022 EPSS Score
  • Nov 22, 2022 EPSS Score
  • Jan 12, 2023 EPSS Score
  • Mar 5, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 25, 2023 EPSS Score
  • Jun 16, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›