CRITICAL

CVE-2021-35064

CVSS v3

9.8

CRITICAL

EPSS Score

82.3%

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

KramerAV VIAWare, all tested versions, allow privilege escalation through misconfiguration of sudo. Sudoers permits running of multiple dangerous commands, including unzip, systemctl and dpkg.

Technical details

Published
7/12/2021

Frequently asked questions

What is CVE-2021-35064?

KramerAV VIAWare, all tested versions, allow privilege escalation through misconfiguration of sudo. Sudoers permits running of multiple dangerous commands, including unzip, systemctl and dpkg.

Is CVE-2021-35064 actively exploited?

Active exploitation of CVE-2021-35064 has not been confirmed. The EPSS score is 82.3%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2021-35064?

CVE-2021-35064 has a CVSS v3 base score of 9.8 (CRITICAL severity).

Is CVE-2021-35064 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.