CVE-2021-40325: High severity Cobbler Project Cobbler vulnerability
Cobbler before 3.3.0 allows authorization bypass for modification of settings.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
pip/cobblerto a version that resolves this vulnerability.Fixed in 3.3.0
Event History
Frequently Asked Questions
What is CVE-2021-40325?
CVE-2021-40325 is a vulnerability in Cobbler before version 3.3.0 that allows authorization bypass for modification of settings.
How severe is CVE-2021-40325?
CVE-2021-40325 has a severity level of 7.5 (high).
What software is affected by CVE-2021-40325?
Cobbler before version 3.3.0 is affected by CVE-2021-40325.
How can I fix CVE-2021-40325?
To fix CVE-2021-40325, update Cobbler to version 3.3.0 or later.
Where can I find more information about CVE-2021-40325?
More information about CVE-2021-40325 can be found at the following references: [NVD](https://nvd.nist.gov/vuln/detail/CVE-2021-40325), [GitHub Commit](https://github.com/cobbler/cobbler/commit/d8f60bbf14a838c8c8a1dba98086b223e35fe70a), [GitHub Releases](https://github.com/cobbler/cobbler/releases/tag/v3.3.0).