← back
CVE-2021-41805

CVE-2021-41805

15Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 35%
exploitation probability
35%top 2% of all CVEs
observed exploitation
nono source reports it
HashiCorp Consul Enterprise before 1.8.17, 1.9.x before 1.9.11, and 1.10.x before 1.10.4 has Incorrect Access Control. An ACL token (with the default operator:write permissions) in one namespace can be used for unintended privilege escalation in a different namespace.
Affected products
n/a · n/a