ZeroHour

CVE-2021-27579

CVSS 3.1
7.8 high
EPSS
<1%p39
Published
()
Modified
Description

Snow Inventory Agent through 6.7.0 on Windows uses CPUID to report on processor types and versions that may be deployed and in use across an IT environment. A privilege-escalation vulnerability exists if CPUID is enabled, and thus it should be disabled via configuration settings.

Vendors
snowsoftware
Products
snow inventory agent
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.