CVE-2021-36797

In Victron Energy Venus OS through 2.72, root access is granted by default to anyone with physical access to the device. NOTE: the vendor disagrees with the reporter's opinion about an alleged "security best practices" violation
References
Link Resource
https://github.com/victronenergy/venus/issues/836 Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:o:victronenergy:venus_os:*:*:*:*:*:*:*:*

History

07 Nov 2023, 03:36

Type Values Removed Values Added
Summary ** DISPUTED ** In Victron Energy Venus OS through 2.72, root access is granted by default to anyone with physical access to the device. NOTE: the vendor disagrees with the reporter's opinion about an alleged "security best practices" violation. In Victron Energy Venus OS through 2.72, root access is granted by default to anyone with physical access to the device. NOTE: the vendor disagrees with the reporter's opinion about an alleged "security best practices" violation

Information

Published : 2021-07-19 17:15

Updated : 2024-08-04 01:15


NVD link : CVE-2021-36797

Mitre link : CVE-2021-36797

CVE.ORG link : CVE-2021-36797


JSON object : View

Products Affected

victronenergy

  • venus_os