Lucene search

K
prionPRIOn knowledge basePRION:CVE-2021-41802
HistoryOct 08, 2021 - 5:15 p.m.

Denial of service

2021-10-0817:15:00
PRIOn knowledge base
www.prio-n.com
7

5.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

22.7%

HashiCorp Vault and Vault Enterprise through 1.7.4 and 1.8.3 allowed a user with write permission to an entity alias ID sharing a mount accessor with another user to acquire this other user’s policies by merging their identities. Fixed in Vault and Vault Enterprise 1.7.5 and 1.8.4.

5.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

22.7%