← All CVEs

CVE-2011-2921

critical · 9.8

ktsuss versions 1.4 and prior has the uid set to root and does not drop privileges prior to executing user specified commands, which can result in command execution with root privileges.

9.8
CVSS
83.1%
EPSS (exploit prob.)
100th
EPSS percentile
2019-11-19
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-273

Affected products

VendorProductAffected versions
ktsuss_projectktsuss<= 1.4

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2011-2921