CVE-2021-0003
published 2021-08-11CVE-2021-0003: Improper conditions check in some Intel(R) Ethernet Controllers 800 series Linux drivers before version 1.4.11 may allow an authenticated user to potentially…
PriorityP422medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
EPSS
0.32%
23.9th percentile
Improper conditions check in some Intel(R) Ethernet Controllers 800 series Linux drivers before version 1.4.11 may allow an authenticated user to potentially enable information disclosure via local access.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| intel | ethernet_controller_e810_firmware | < 1.4.11 | 1.4.11 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-vwwx-m7wp-54f6: Improper conditions check in some Intel(R) Ethernet Controllers 800 series Linux drivers before version 1
ghsa_unreviewed·2022-05-24
CVE-2021-0003 [MEDIUM] CWE-755 GHSA-vwwx-m7wp-54f6: Improper conditions check in some Intel(R) Ethernet Controllers 800 series Linux drivers before version 1
Improper conditions check in some Intel(R) Ethernet Controllers 800 series Linux drivers before version 1.4.11 may allow an authenticated user to potentially enable information disclosure via local access.
Red Hat
kernel: Improper conditions check in some Intel(R) Ethernet Controllers 800 series Linux drivers
vendor_redhat·2021-08-11·CVSS 5.5
CVE-2021-0003 [MEDIUM] CWE-200 kernel: Improper conditions check in some Intel(R) Ethernet Controllers 800 series Linux drivers
kernel: Improper conditions check in some Intel(R) Ethernet Controllers 800 series Linux drivers
Improper conditions check in some Intel(R) Ethernet Controllers 800 series Linux drivers before version 1.4.11 may allow an authenticated user to potentially enable information disclosure via local access.
A flaw was found in the Linux kernel. This flaw allows a local, authenticated user to enable information disclosure due to an improper conditions check in some Intel(R) Ethernet Controllers 800 series Linux drivers. The highest threat from this vulnerability is to confidentiality.
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-alt (Red Hat
Suricata
ET EXPLOIT VMWare View Planner RCE (CVE-2021-21978) Attempt M2
suricata·2021-03-15·CVSS 9.8
CVE-2021-21978 [CRITICAL] ET EXPLOIT VMWare View Planner RCE (CVE-2021-21978) Attempt M2
ET EXPLOIT VMWare View Planner RCE (CVE-2021-21978) Attempt M2
Rule: alert http any any -> [$HOME_NET,$HTTP_SERVERS] any (msg:"ET EXPLOIT VMWare View Planner RCE (CVE-2021-21978) Attempt M2"; flow:established,to_server; http.request_line; content:"POST /logupload"; startswith; fast_pattern; http.request_body; content:"name=|22|logMetaData|22|"; content:"itrLogPath"; content:"name=|22|logfile|22 3b|"; content:"log_upload_wsgi.py"; reference:url,www.vmware.com/security/advisories/VMSA-2021-0003.html; reference:url,attackerkb.com/assessments/fc456e03-adf5-409a-955a-8a4fb7e79ece; reference:cve,2021-21978; classtype:attempted-admin; sid:2032008; rev:1; metadata:affected_product VMware, attack_target Server, created_at 2021_03_15, cve CVE_2021_21978, deployment Datacenter, deployment SSLDecrypt
Suricata
ET EXPLOIT VMWare View Planner RCE (CVE-2021-21978) Attempt M1
suricata·2021-03-15·CVSS 9.8
CVE-2021-21978 [CRITICAL] ET EXPLOIT VMWare View Planner RCE (CVE-2021-21978) Attempt M1
ET EXPLOIT VMWare View Planner RCE (CVE-2021-21978) Attempt M1
Rule: alert http any any -> [$HOME_NET,$HTTP_SERVERS] any (msg:"ET EXPLOIT VMWare View Planner RCE (CVE-2021-21978) Attempt M1"; flow:established,to_server; http.request_line; content:"POST /logupload?logMetaData="; startswith; fast_pattern; content:"itrLogPath"; content:"log_upload_wsgi.py"; http.request_body; content:"name=|22|logfile|22 3b|"; reference:url,paper.seebug.org/1495/; reference:url,www.vmware.com/security/advisories/VMSA-2021-0003.html; reference:cve,2021-21978; classtype:attempted-admin; sid:2032009; rev:1; metadata:affected_product VMware, attack_target Server, created_at 2021_03_15, cve CVE_2021_21978, deployment Internal, deployment SSLDecrypt, performance_impact Low, confidence High, signature_severity Majo
No public exploits indexed.
No writeups or analysis indexed.
2021-08-11
Published