CVE-2021-27579
23.02.2021, 18:15
Snow Inventory Agent through 6.7.0 on Windows uses CPUID to report on processor types and versions that may be deployed and in use across an IT environment. A privilege-escalation vulnerability exists if CPUID is enabled, and thus it should be disabled via configuration settings.Enginsight
Vendor | Product | Version |
---|---|---|
snowsoftware | snow_inventory_agent | 5.3.1 ≤ 𝑥 ≤ 6.7.0 |
𝑥
= Vulnerable software versions