First published: Mon Oct 04 2021(Updated: )
Cobbler before 3.3.0 allows authorization bypass for modification of settings.
Credit: cve@mitre.org cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
pip/cobbler | <3.3.0 | 3.3.0 |
Cobbler Project Cobbler | <=3.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-40325 is a vulnerability in Cobbler before version 3.3.0 that allows authorization bypass for modification of settings.
CVE-2021-40325 has a severity level of 7.5 (high).
Cobbler before version 3.3.0 is affected by CVE-2021-40325.
To fix CVE-2021-40325, update Cobbler to version 3.3.0 or later.
More information about CVE-2021-40325 can be found at the following references: [NVD](https://nvd.nist.gov/vuln/detail/CVE-2021-40325), [GitHub Commit](https://github.com/cobbler/cobbler/commit/d8f60bbf14a838c8c8a1dba98086b223e35fe70a), [GitHub Releases](https://github.com/cobbler/cobbler/releases/tag/v3.3.0).