Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-20579
HistoryMar 15, 2022 - 12:00 a.m.

Cobbler Licensing Issue Vulnerability (CNVD-2022-20579)

2022-03-1500:00:00
China National Vulnerability Database
www.cnvd.org.cn
19

0.002 Low

EPSS

Percentile

55.2%

Cobbler is a network installation server suite that is primarily used to quickly set up Linux network installation environments.An authorization issue vulnerability exists in versions of Cobbler prior to 3.3.2, which stems from the presence of incorrect authorization in the application. An attacker could exploit the vulnerability to cause an expired account to still be able to log in.

CPENameOperatorVersion
cobbler cobblerlt3.3.2