Evidence dossier

CVE-2021-4034

A local privilege escalation vulnerability was found on polkit's pkexec utility.

Exploited in the wild (CISA KEV since Jun 27, 2022). NVD reports CVSS 3.1 7.8. EPSS estimates 94.9% exploit likelihood as of Aug 8, 2026.

89.990.2Priority evidence range
Evidence current through Aug 27, 2026, 6:09 PM UTC

As of Aug 27, 2026

Normalized restatement

A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as privileged users according predefined policies. The current version of pkexec doesn't handle the calling parameters count correctly and ends trying to execute environment variables as commands. An attacker can leverage this by crafting environment variables in such a way it'll induce pkexec to execute arbitrary code. When successfully executed the attack can cause a local privilege escalation given unprivileged users administrative rights on the target machine.

State
PUBLISHED
Published
Jan 28, 2022
Updated
Oct 21, 2025
Evidence coverage
99%

Evidence chronology

What was known when

Download this view's receipt →
  1. Source dateSource date omittedFirst observed by CASCA
    CISA-ADP

    Record text: CISA ADP Vulnrichment

    Inspect raw assertion
    Field
    container
    Value
    CISA ADP Vulnrichment
    Original evidence ↗
  2. Source dateSource date omittedFirst observed by CASCA
    CVE Program

    Record text: CVE Program Container

    Inspect raw assertion
    Field
    container
    Value
    CVE Program Container
    Original evidence ↗
  3. Source dateSource date omittedFirst observed by CASCA
    redhat

    Record text: A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as privileged users according predefined policies. The current version of pkexec doesn't handle the calling parameters count correctly and ends trying to execute environment variables as commands. An attacker can leverage this by crafting environment variables in such a way it'll induce pkexec to execute arbitrary code. When successfully executed the attack can cause a local privilege escalation given unprivileged users administrative rights on the target machine.

    Inspect raw assertion
    Field
    container
    Value
    A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as privileged users according predefined policies. The current version of pkexec doesn't handle the calling parameters count correctly and ends trying to execute environment variables as commands. An attacker can leverage this by crafting environment variables in such a way it'll induce pkexec to execute arbitrary code. When successfully executed the attack can cause a local privilege escalation given unprivileged users administrative rights on the target machine.
    Original evidence ↗
  4. Source dateFirst observed by CASCA
    CISA KEV

    Exploitation cataloged: Red Hat Polkit Out-of-Bounds Read and Write Vulnerability

    Inspect raw assertion
    Field
    observed_exploitation
    Value
    Red Hat Polkit Out-of-Bounds Read and Write Vulnerability
    Original evidence ↗
  5. Source dateFirst observed by CASCA
    FIRST EPSS

    EPSS score: 94.92% probability · 99.85th percentile

    Inspect raw assertion
    Field
    model_probability
    Value
    Probability 0.949210000000; percentile 0.998520000000
    Original evidence ↗
ExploitationCatalog member

CISA KEV · catalog date Jun 27, 2022 · first observed Jul 19, 2026

Exploit likelihood94.92%

FIRST EPSS · score date Aug 8, 2026 · 99.9th percentile · first observed Aug 8, 2026

SeverityCVSS 7.8

NVD · CVSS 3.1 · first observed Jul 19, 2026 · same-version scores align in this snapshot

Evidence detail

Source limits and decisions

Why each evidence state has this value

casca-unknown-reasons-v1
Exploitation statusEvidence supported

Eligible evidence is present for this bounded claim.

Revision
evidence-policy-v1.1.0
Cutoff
Aug 27, 2026
Resolution
None
Exploit likelihoodEvidence supported

Eligible evidence is present for this bounded claim.

Revision
evidence-policy-v1.1.0
Cutoff
Aug 27, 2026
Resolution
None
Severity assessmentEvidence supported

Eligible evidence is present for this bounded claim.

Revision
casca-direct-cvss-eligibility-v1
Cutoff
Aug 27, 2026
Resolution
None
Affected productsSource-reported scope

The cited source assertion is retained while canonical product linkage remains open.

Revision
casca-factor-d-obligations-v1
Cutoff
Aug 27, 2026
Resolution
Resolve identity

Source comparison

Who said what

CISA-ADPIndependent enrichment
Record text

CISA ADP Vulnrichment

Inspect raw assertion
Field
container
Value
CISA ADP Vulnrichment
Source dateSource date omittedFirst observed by CASCAOriginal evidence ↗
CVE ProgramDerivative copy
Record text

CVE Program Container

Inspect raw assertion
Field
container
Value
CVE Program Container
Source dateSource date omittedFirst observed by CASCAOriginal evidence ↗
redhatOriginal assertion
Record text

A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as privileged users according predefined policies. The current version of pkexec doesn't handle the calling parameters count correctly and ends trying to execute environment variables as commands. An attacker can leverage this by crafting environment variables in such a way it'll induce pkexec to execute arbitrary code. When successfully executed the attack can cause a local privilege escalation given unprivileged users administrative rights on the target machine.

Inspect raw assertion
Field
container
Value
A local privilege escalation vulnerability was found on polkit's pkexec utility. The pkexec application is a setuid tool designed to allow unprivileged users to run commands as privileged users according predefined policies. The current version of pkexec doesn't handle the calling parameters count correctly and ends trying to execute environment variables as commands. An attacker can leverage this by crafting environment variables in such a way it'll induce pkexec to execute arbitrary code. When successfully executed the attack can cause a local privilege escalation given unprivileged users administrative rights on the target machine.
Source dateSource date omittedFirst observed by CASCAOriginal evidence ↗
CISA KEVOriginal assertion
Exploitation cataloged

Red Hat Polkit Out-of-Bounds Read and Write Vulnerability

Inspect raw assertion
Field
observed_exploitation
Value
Red Hat Polkit Out-of-Bounds Read and Write Vulnerability
Source dateFirst observed by CASCAOriginal evidence ↗
FIRST EPSSOriginal assertion
EPSS score

94.92% probability · 99.85th percentile

Inspect raw assertion
Field
model_probability
Value
Probability 0.949210000000; percentile 0.998520000000
Source dateFirst observed by CASCAOriginal evidence ↗

Applicability

Cited product scope

Trace impact →
55Underlying assertions
32Canonical products
54Target assertions
1Constraint assertions

Grouped from 9 configuration nodes in this exact snapshot. Visual grouping is navigational; asset exposure and root cause require cited evidence.

Identity source boundaries
  • Cpe dictionary1,775,266 records · observed through 2026-07-21T06:45:29.809Z27d65b0f-b718-4b4f-bb79-c47c68d09dfa
  • Cpe match643,502 records · observed through 2026-07-21T08:13:17.697Z955dae73-7302-438b-aee1-058d7cc5d48e

33 scope groups

redhat · source assertedn/apolkitDirect source scope
Affected: all
Source-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Inspect raw assertion[{"status": "affected", "version": "all"}]
NVD CPE · OPERATING SYSTEMcanonicalubuntu_linuxVulnerable target · 5 assertions
Version 14.04; Version 16.04; Version 18.04; Version 20.04; Version 21.10Canonical identity product-a18840e4673d48e569064752e9575849e99b3f173c63d7c965c4c193bcaebef2Linked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:o:canonical:ubuntu_linux:20.04:*:*:*:lts:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    902b8056-9e37-443b-8905-8aa93e2447fb
  2. cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    23a7c53f-b80f-4e6a-afa9-58eea84be11d
  3. cpe:2.3:o:canonical:ubuntu_linux:21.10:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    aae4d2d0-ceeb-416f-8bc5-a7987df56190
  4. cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    7a5301bf-1402-4be0-a0f8-69fbe79bc6d6
  5. cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    2 · node/0 · match 0
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    815d70a8-47d3-459c-a32c-9feaca0659d1
NVD CPE · APPLICATIONoraclehttp_serverVulnerable target · 2 assertions
Version 12.2.1.3.0; Version 12.2.1.4.0Canonical identity product-bfccd54e33671fad7b63685c4bf72cdbd53aad278e2a851c4928fef18206adceLinked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:a:oracle:http_server:12.2.1.3.0:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 0
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    dfc79b17-e9d2-44d5-93ed-2f959e7a3d43
  2. cpe:2.3:a:oracle:http_server:12.2.1.4.0:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    ad04bee5-e9a8-4584-a68c-0195ce9c402c
NVD CPE · APPLICATIONoraclezfs_storage_appliance_kitVulnerable target · 1 assertions
Version 8.8Canonical identity product-422d347a32dcb530963062c00279c72253e55aefd10d03ceb330a7dbb1b6c5d3Linked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:a:oracle:zfs_storage_appliance_kit:8.8:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    4 · node/0 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    d3e503fb-6279-4d4a-91d8-e237ecf9d2b0
NVD CPE · APPLICATIONpolkit_projectpolkitVulnerable target · 1 assertions
Any version (unconstrained) (< 121)Canonical identity product-e81f758e6b637c995e45dc4148f04de9f0425499aa3370219ceeb2f9f7dd4d96Linked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:a:polkit_project:polkit:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    0 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 121
    Match ID
    f01d94c9-1e04-413b-8636-1aac6d9e84d6
NVD CPE · OPERATING SYSTEMredhatenterprise_linuxVulnerable target · 1 assertions
Version 8.0Canonical identity product-ec20120153af988d42a6a2dfd3cdd9595762b35581f66014faaa4f85d8f844eeLinked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 2
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    f4cff558-3c47-480d-a2f0-babf26042943
NVD CPE · OPERATING SYSTEMredhatenterprise_linux_desktopVulnerable target · 1 assertions
Version 7.0Canonical identity product-ebce605e64c58caa7df6a30e91702332cd8c0be8f801e44353e6350e913ec5aeLinked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 3
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    33c068a4-3780-4eab-a937-6082df847564
NVD CPE · OPERATING SYSTEMredhatenterprise_linux_eusVulnerable target · 1 assertions
Version 8.2Canonical identity product-8abf8d7f0342f690712d750b6cf7fbf4068eb0134c40a51c5b57b074f81c6378Linked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:o:redhat:enterprise_linux_eus:8.2:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 4
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    831f0f47-3565-4763-b16f-c87b1ff2035e
NVD CPE · OPERATING SYSTEMredhatenterprise_linux_for_ibm_z_systemsVulnerable target · 2 assertions
Version 7.0; Version 8.0Canonical identity product-fab9230751e41d94860bfa2eaae4ca0e74c5c60f58631aa282686d100ad4fa0bLinked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:8.0:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 6
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    87c21fe1-ea5c-498f-9c6c-d05f91a88217
  2. cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:7.0:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 5
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    566507b6-ac95-47f7-a3fb-c6f414e45f51
NVD CPE · OPERATING SYSTEMredhatenterprise_linux_for_ibm_z_systems_eusVulnerable target · 2 assertions
Version 8.2; Version 8.4Canonical identity product-323efd260a3034fd5a801fc0892ece9f9134f88683f3fd325c7ee2fdc93956fdLinked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:8.2:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 7
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    0ab105ec-19f9-424a-86f1-305a6fd74a9c
  2. cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:8.4:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 8
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    8c9bd9ae-46fc-4609-8d99-a3cfe91d58d1
NVD CPE · OPERATING SYSTEMredhatenterprise_linux_for_power_big_endianVulnerable target · 1 assertions
Version 7.0Canonical identity product-fd0893ef7253031c8ee72effb6fcc65181f9b3f5e01f8f48b6a6ab89a31380a9Linked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:o:redhat:enterprise_linux_for_power_big_endian:7.0:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 9
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    1cdcff34-6f1d-45a1-be37-6a0e17b04801
NVD CPE · OPERATING SYSTEMredhatenterprise_linux_for_power_little_endianVulnerable target · 2 assertions
Version 7.0; Version 8.0Canonical identity product-d01c6ee0421fbc3321008543c2e5581950beffd4af6868b9a4ce0cf3d25d9429Linked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:8.0:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 11
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    47811209-5ce5-4375-8391-b0a7f6a0e420
  2. cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:7.0:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 10
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    b4a684c7-88fd-43c4-9bdb-ae337fcbd0ab
NVD CPE · OPERATING SYSTEMredhatenterprise_linux_for_power_little_endian_eusVulnerable target · 3 assertions
Version 8.1; Version 8.2; Version 8.4Canonical identity product-280a720ee74a48a2d9e1641fe847ee843978848900003d7939566317c7359fb5Linked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:8.4:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 14
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    983533dd-3970-4a37-9a9c-582bd48aa1e5
  2. cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:8.1:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 12
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    8eb6f417-25d0-4a28-b7ba-d21929eaa9e9
  3. cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:8.2:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 13
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    e5c80db2-4a78-4ec9-b2a8-1e4d902c4834
NVD CPE · OPERATING SYSTEMredhatenterprise_linux_for_scientific_computingVulnerable target · 1 assertions
Version 7.0Canonical identity product-d22fc88b6b85afc426c8220428110aecfb39a59d3b7ddf5757cf39cb9f5feb2fLinked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:o:redhat:enterprise_linux_for_scientific_computing:7.0:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 15
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    37ce1dc7-72c5-483c-8921-0b462c8284d1
NVD CPE · OPERATING SYSTEMredhatenterprise_linux_serverVulnerable target · 2 assertions
Version 6.0; Version 7.0Canonical identity product-8db20157ede2f731f576213a7e555a24d2424bb17aed8e43ad9b77c3587f9deaLinked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 17
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    51ef4996-72f4-4fa4-814f-f5991e7a8318
  2. cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 16
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    9bbcd86a-e6c7-4444-9d74-f861084090f0
NVD CPE · OPERATING SYSTEMredhatenterprise_linux_server_ausVulnerable target · 6 assertions
Version 7.3; Version 7.4; Version 7.6; Version 7.7; Version 8.2; Version 8.4Canonical identity product-7120df83a9b73aae2817084ac2070ecc7d1fbfcada23076a424824e660688aaeLinked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:o:redhat:enterprise_linux_server_aus:7.7:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 21
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    7431abc1-9252-419e-8cc1-311b41360078
  2. cpe:2.3:o:redhat:enterprise_linux_server_aus:7.3:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 18
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    98381e61-f082-4302-b51f-5648884f998b
  3. cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 19
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    d99a687e-eae6-417e-a88e-d0082bc194cd
  4. cpe:2.3:o:redhat:enterprise_linux_server_aus:8.4:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 23
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    e28f226a-cbc7-4a32-be58-398fa5b42481
  5. cpe:2.3:o:redhat:enterprise_linux_server_aus:8.2:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 22
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    6897676d-53f9-45b3-b27f-7ff9a4c58d33
  6. cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 20
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    b353ce99-d57c-465b-aab0-73ef581127d1
NVD CPE · OPERATING SYSTEMredhatenterprise_linux_server_eusVulnerable target · 1 assertions
Version 8.4Canonical identity product-1220950f14941e44f97ef359dfe4710143870ab715db6bc680fb3bcf3da40d5bLinked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:o:redhat:enterprise_linux_server_eus:8.4:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 24
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    61917784-47f1-4328-ba1f-a88c5e23496b
NVD CPE · OPERATING SYSTEMredhatenterprise_linux_server_tusVulnerable target · 4 assertions
Version 7.6; Version 7.7; Version 8.2; Version 8.4Canonical identity product-bc6ac9f1e87a668175a638bad6013a05d2210c8abe7977a8f8f0948257ba71daLinked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:o:redhat:enterprise_linux_server_tus:8.2:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 27
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    b09acf2d-d83f-4a86-8185-9569605d8ee1
  2. cpe:2.3:o:redhat:enterprise_linux_server_tus:7.7:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 26
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    17f256a9-d3b9-4c72-b013-4efd878bfea8
  3. cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 25
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    b76aa310-fec7-497f-af04-c3ec1e76c4cc
  4. cpe:2.3:o:redhat:enterprise_linux_server_tus:8.4:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 28
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    ac10d919-57fd-4725-b8d2-39ecb476902f
NVD CPE · APPLICATIONredhatenterprise_linux_server_update_services_for_sap_solutionsVulnerable target · 2 assertions
Version 7.6; Version 7.7Canonical identity product-182eab7972d0a49fbb4e81a2937c373e512ec5c8a9d6ce09b3dce18e4f01a260Linked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:a:redhat:enterprise_linux_server_update_services_for_sap_solutions:7.6:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 0
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    cb70a2f8-eab3-4898-9353-f679ff721c82
  2. cpe:2.3:a:redhat:enterprise_linux_server_update_services_for_sap_solutions:7.7:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 1
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    eb3ac848-c2d0-4878-8619-f5815173555d
NVD CPE · OPERATING SYSTEMredhatenterprise_linux_server_update_services_for_sap_solutionsVulnerable target · 3 assertions
Version 8.1; Version 8.2; Version 8.4Canonical identity product-620fb96b7f8c3dad1ed3a016e96da2a9a5a83898e74776d63b998d9fe84efa9fLinked exact
Scope supported
Inspect raw assertions
  1. cpe:2.3:o:redhat:enterprise_linux_server_update_services_for_sap_solutions:8.1:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 29
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    48c2e003-a71c-4d06-b8b3-f93160568182
  2. cpe:2.3:o:redhat:enterprise_linux_server_update_services_for_sap_solutions:8.4:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 31
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    bc6dd887-9744-43ea-8b3c-44c6b6339590
  3. cpe:2.3:o:redhat:enterprise_linux_server_update_services_for_sap_solutions:8.2:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 30
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    3921c1cf-a16d-4727-99ad-03effa7c91ca
NVD CPE · OPERATING SYSTEMredhatenterprise_linux_workstationVulnerable target · 1 assertions
Version 7.0Canonical identity product-b2aa744c9fb2b4ef0e3b842acbf37879ad4ac43af291292cfb0906170b204ab9Linked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    1 · node/0 · match 32
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    825ece2d-e232-46e0-a047-074b34db1e97
NVD CPE · HARDWAREsiemensscalance_lpe9403Environmental constraint · 1 assertions
Version not applicableCanonical identity product-41fe45677937e1cb4060ce54de1f1bb53c32244889b7f958436ff5e2c59d018dLinked exact
Scope constrained
Inspect raw assertion
  1. cpe:2.3:h:siemens:scalance_lpe9403:-:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Environmental constraint
    Configuration
    6 · node/1 · match 0
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    52a77c9d-e59c-4397-b834-797d7b334a6b
NVD CPE · OPERATING SYSTEMsiemensscalance_lpe9403_firmwareVulnerable target · 1 assertions
Any version (unconstrained) (< 2.0)Canonical identity product-4d64d07fc73c0a4e11b5f1c97563cfbd51d4cb1d1fb0ccb254165059945b073dLinked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:o:siemens:scalance_lpe9403_firmware:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    6 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 2.0
    Match ID
    9fc41ad4-69e5-48d8-8216-671f485c3c40
NVD CPE · APPLICATIONsiemenssinumerik_edgeVulnerable target · 1 assertions
Any version (unconstrained) (< 3.3.0)Canonical identity product-56861003f9a25b054b31cc65aa1481834a1760655736010f071faa40d18903afLinked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:a:siemens:sinumerik_edge:*:*:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    5 · node/0 · match 0
    Logic
    OR
    Version bounds
    through excluding 3.3.0
    Match ID
    d069ea07-88a5-4058-a2bc-44f94d9acc9a
NVD CPE · APPLICATIONstarwindsoftwarecommand_centerVulnerable target · 1 assertions
Version 1.0Canonical identity product-8cae6cb4efa351ae7f19e893f8e26bab6730cbaf5a381bdec7925d8574497977Linked exact
Scope supported
Inspect raw assertion
  1. cpe:2.3:a:starwindsoftware:command_center:1.0:update3_build5871:*:*:*:*:*:*
    Official link
    Linked exact
    Role
    Vulnerable target
    Configuration
    7 · node/0 · match 0
    Logic
    OR
    Version bounds
    No explicit bounds
    Match ID
    b323ef31-7a67-4458-8323-86f8aa58268c

Affected-product evidence

Accepted scope and product mapping

31 canonical links · 1 source-reported links

Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-1220950f14941e44f97ef359dfe4710143870ab715db6bc680fb3bcf3da40d5b

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
c0fea5e6-6418-4797-9613-2851168b3db0
Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-182eab7972d0a49fbb4e81a2937c373e512ec5c8a9d6ce09b3dce18e4f01a260

Source class
Nvd cpe vulnerable target
Assertions
2
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
c9fc6f57-b3af-4733-8c75-2e238ae2ec31f5bbe5bf-e3a8-4d16-bc00-27d6305d18fd
Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-280a720ee74a48a2d9e1641fe847ee843978848900003d7939566317c7359fb5

Source class
Nvd cpe vulnerable target
Assertions
3
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
1d0a6ac5-ec4f-4592-b190-1cbbbc1772038f4436bf-b690-4b6b-bc31-1d4d5db60c83c65cb41f-83dc-4144-a1b9-ef4d58548c61
Mapping establishedEvidence supported

vendor-24e9c62387c8ce6bd7fe3410c033cf0a2c626034a7acd9b6349c0ade1e2e7e47 · product-2bfcf120752e6f9a51217da00f5a1078922218e0192327efe2faf0630b9c272f

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
39a1b80b-4107-4b1f-87ae-07dbfaf1c30e
Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-323efd260a3034fd5a801fc0892ece9f9134f88683f3fd325c7ee2fdc93956fd

Source class
Nvd cpe vulnerable target
Assertions
2
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
671323a3-5d5f-4a07-ba0a-39f04ae3f51176d411f1-6147-4ffd-af91-527fa04f984f
Mapping establishedEvidence supported

vendor-6bbcd126779403146e957d68529786b086421e0676d9e90a4d53d03594694fb2 · product-403303d357663c168032e5bc8ec64184cc921252f19c2fb901badaf8d4687b3b

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
73b3108d-a283-4f2a-923d-66b24383b3d9
Mapping establishedEvidence supported

vendor-b1377626da187dbea1eeb98f365c57a3dcbeccfdc2a7d3471e94ece7b6f88e55 · product-422d347a32dcb530963062c00279c72253e55aefd10d03ceb330a7dbb1b6c5d3

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
1e97ca3e-535f-4ccd-a921-e046b5dc6c30
Mapping establishedEvidence supported

vendor-6bbcd126779403146e957d68529786b086421e0676d9e90a4d53d03594694fb2 · product-430e47be769db529c3f501c88858eedd740f8aad0d6d44b9d60019d94f14336d

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
f5715ab3-db98-4ad7-8939-2c5a4abb7e53
Mapping establishedEvidence supported

vendor-380ffb64c552a4e30b7eb6825ecde41bb36260544f33f7a0e7a01d1608acb38b · product-4d64d07fc73c0a4e11b5f1c97563cfbd51d4cb1d1fb0ccb254165059945b073d

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
12a0bec7-177e-4f25-a4c4-08508fa7f4f5
Mapping establishedEvidence supported

vendor-6bbcd126779403146e957d68529786b086421e0676d9e90a4d53d03594694fb2 · product-4f2240e45c4385f8980643ce838561b90551012dc317022ee66a7d71a9db8e28

Source class
Nvd cpe vulnerable target
Assertions
2
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
c3f6e62f-3c99-4470-bda6-f8592f97258bcf12c3d0-1a1c-4d7a-85f7-9d152bf5d4e4
Mapping establishedEvidence supported

vendor-380ffb64c552a4e30b7eb6825ecde41bb36260544f33f7a0e7a01d1608acb38b · product-56861003f9a25b054b31cc65aa1481834a1760655736010f071faa40d18903af

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
5baf2148-0335-45b9-9cff-758784a0a878
Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-620fb96b7f8c3dad1ed3a016e96da2a9a5a83898e74776d63b998d9fe84efa9f

Source class
Nvd cpe vulnerable target
Assertions
3
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
406a049f-6782-47a6-84df-5363d73e9da1c09bf5cb-9f61-4834-a5ef-7f88ad76d8c0f8bb70f0-3628-4260-9ebe-760147c95828
Mapping establishedEvidence supported

vendor-6bbcd126779403146e957d68529786b086421e0676d9e90a4d53d03594694fb2 · product-685b96dee06af953277b521fa9ffc43f79d2cca232623f0e5b0194a49d221c31

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
75e57c00-e77d-4876-8999-f2af573af2e1
Mapping establishedEvidence supported

vendor-6bbcd126779403146e957d68529786b086421e0676d9e90a4d53d03594694fb2 · product-6e046fb997f096ca9d3ba77e0e7dba3aad0205129bb30ab70c401b282bcd0f8d

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
8cc79b12-ec57-416e-80eb-489f93487f8b
Mapping establishedEvidence supported

vendor-6bbcd126779403146e957d68529786b086421e0676d9e90a4d53d03594694fb2 · product-6fe21abd2669255eab9cb18837ddcf63aa787fce42fdad30fa2dd0c4a530da25

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
a9aefaae-817e-491e-8442-f1a6f200eeb8
Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-7120df83a9b73aae2817084ac2070ecc7d1fbfcada23076a424824e660688aae

Source class
Nvd cpe vulnerable target
Assertions
6
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
022e1001-b808-4745-a96d-d6ba352c0af547b9981c-e5f7-413a-a70a-5b0df06997455b28fe4d-51bb-4022-85f1-e7b1fbef6de55de1359f-1988-4bee-9794-e753e527f5dd890ecddd-3f93-4346-9a03-f44510bc30d4d2f62290-4de5-4c29-904d-0beef53f9327
Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-8abf8d7f0342f690712d750b6cf7fbf4068eb0134c40a51c5b57b074f81c6378

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
623cafcb-f1d6-47e9-b604-eb40c462c5c0
Mapping establishedEvidence supported

vendor-24e9c62387c8ce6bd7fe3410c033cf0a2c626034a7acd9b6349c0ade1e2e7e47 · product-8cae6cb4efa351ae7f19e893f8e26bab6730cbaf5a381bdec7925d8574497977

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
623b2e80-9f10-43f6-a410-d86cfcae7093
Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-8db20157ede2f731f576213a7e555a24d2424bb17aed8e43ad9b77c3587f9dea

Source class
Nvd cpe vulnerable target
Assertions
2
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
061d8955-1327-4550-9591-236aa90ca8b457114191-cdc5-4e25-aa7b-1ed4b40b9787
Mapping establishedEvidence supported

vendor-6bbcd126779403146e957d68529786b086421e0676d9e90a4d53d03594694fb2 · product-908c58b965f5cdd7f6621821fd6c68d62c5a5ce89de01a9e91af7286e0b17d41

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
cae01a34-8e88-48b4-abaf-bc0c67c886dd
Mapping establishedEvidence supported

vendor-c57a6167e95991f72f9616ac32b40463ac13c5f4929fcce3efc058b09a445b54 · product-a18840e4673d48e569064752e9575849e99b3f173c63d7c965c4c193bcaebef2

Source class
Nvd cpe vulnerable target
Assertions
5
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
3bd6d0e4-c59f-470d-826d-76b31b11827a6afeb1f3-7763-4ea5-9e4e-d8aaac629c8a73919bb0-9945-49b5-85b8-8a29a110db2ae5baeeba-e83d-45be-b4ad-85d288614323e7c7c88f-697f-4752-9d54-1cbccd2f6790
Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-b2aa744c9fb2b4ef0e3b842acbf37879ad4ac43af291292cfb0906170b204ab9

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
1193cd35-d50a-40c1-9eec-6a5d1bb21b2c
Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-bc6ac9f1e87a668175a638bad6013a05d2210c8abe7977a8f8f0948257ba71da

Source class
Nvd cpe vulnerable target
Assertions
4
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
16c2fdda-54a1-4b78-81e6-a8456d7b7d5149524248-0382-4ba2-a396-1aa0286f89db5448751d-4d61-4e13-9b84-082d49eb7d4cc3c38995-224d-43d0-a031-d69adc307609
Mapping establishedEvidence supported

vendor-b1377626da187dbea1eeb98f365c57a3dcbeccfdc2a7d3471e94ece7b6f88e55 · product-bfccd54e33671fad7b63685c4bf72cdbd53aad278e2a851c4928fef18206adce

Source class
Nvd cpe vulnerable target
Assertions
2
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
27d51b59-74d9-497d-9d98-db5c866bb9fd5c36cf27-189f-40df-8583-ba5de36f695b
Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-d01c6ee0421fbc3321008543c2e5581950beffd4af6868b9a4ce0cf3d25d9429

Source class
Nvd cpe vulnerable target
Assertions
2
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
7730f3c4-51e6-47d5-b542-31fa0330224e94086eb8-633c-41af-9613-82f6fa0d755b
Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-d22fc88b6b85afc426c8220428110aecfb39a59d3b7ddf5757cf39cb9f5feb2f

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
c9f3807a-adcf-4f14-9353-33770f5e1fff
Mapping establishedEvidence supported

vendor-b808cdc68d74f333ae7baf917b13208bd9afe3251f642c16b004d451e3e40300 · product-e81f758e6b637c995e45dc4148f04de9f0425499aa3370219ceeb2f9f7dd4d96

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
aac85c37-1ce8-4b68-a7ba-c4f7f3164d94
Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-ebce605e64c58caa7df6a30e91702332cd8c0be8f801e44353e6350e913ec5ae

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
e8b41497-d94c-40be-837f-eba9c5c60b7c
Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-ec20120153af988d42a6a2dfd3cdd9595762b35581f66014faaa4f85d8f844ee

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
e62f3c14-612b-4006-94f0-7abd123d2976
Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-fab9230751e41d94860bfa2eaae4ca0e74c5c60f58631aa282686d100ad4fa0b

Source class
Nvd cpe vulnerable target
Assertions
2
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
5fc98050-3757-4576-9664-54a6f59ff053a0953659-2a70-45b4-b7a3-0220db53081c
Mapping establishedEvidence supported

vendor-c759fafc60d6abc1277ecbf1ee6294d1f25ae0a4c7d5d0d9355c414b2db182cc · product-fd0893ef7253031c8ee72effb6fcc65181f9b3f5e01f8f48b6a6ab89a31380a9

Source class
Nvd cpe vulnerable target
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
37635a60-165d-40de-9141-5974ac72dde5
Source-reported scopeSource-reported scope

Canonical linkage remains open; the cited source assertion is retained below.

Vendor specified only by source · Product specified only by source

Source class
Direct cve affected
Assertions
1
Mapping revision
cpe23-exact-mapping-v1
Observed cutoff
Aug 27, 2026
Retained assertion IDs
101ebb8b-bf1e-4298-95c5-996c6e18a689

Assessments

CVSS by origin

7.8
NVDCVSS 3.1 · role Primary · priority eligiblevalid_matchCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
7.2
NVDCVSS 2.0 · role Primary · priority eligiblevalid_matchAV:L/AC:L/Au:N/C:C/I:C/A:C
7.8
CVE Program sourceCVSS 3.1 · role Secondary · priority eligiblevalid_matchCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
7.8
CISA-ADPCVSS 3.1 · role unknown · display onlyDirect record assessment retained outside normalized eligibilityCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Direct CVE/CNA normalized decisions

7.8Priority eligible

CISA-ADP

CVSS 3.1 · Secondary · Independent enrichment · rank 2

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Validation
Valid match
Recomputed
7.8
Decision reason
Evidence supported
Policy
casca-direct-cvss-eligibility-v1

Assessments are retained side by side under closed precedence. Cascade never averages CVSS.

Evidence boundaries

  • KEV membership is authoritative for the catalog, not proof of exposure in any environment.
  • EPSS is a dated model probability and not an individual-environment prediction.
  • Affected or fixed status applies only to the exact cited product and version scope; remaining scope stays source-scoped.
  • NVD-carried upstream facts remain derivative; independent corroboration requires a separately authored source.
  • Only NVD metrics validated under the generation-bound calculator are Public Priority eligible; direct CVE record metrics remain display-only.
  • NVD CVSS source eligibility is closed: NVD-authored, exact record-source, or registered same-CVE container origin; unmapped sources remain display-only.
  • Core replay supports the active and immediately prior generation; retrospective valid-at replay is deferred.
  • OSV aggregation and OSV-converted NVD material are not independent corroboration.
  • Red Hat facts are vendor assertions for the exact supplied products.
  • Nonmembership and not-yet-observed states are not proof of safety.