CVE-2025-30093

EUVD-2025-8518
HTCondor 23.0.x before 23.0.22, 23.10.x before 23.10.22, 24.0.x before 24.0.6, and 24.6.x before 24.6.1 allows authenticated attackers to bypass authorization restrictions.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.1 HIGH
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
CISA-ADPADP
8.1 HIGH
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 41%
Affected Products (NVD)
VendorProductVersion
wischtcondor
23.0.0 ≤
𝑥
< 23.0.22
wischtcondor
23.10.1 ≤
𝑥
< 23.10.22
wischtcondor
24.0.1 ≤
𝑥
< 24.0.6
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
condor
forky
25.6.1+dfsg-1
fixed
sid
25.6.1+dfsg-1
fixed
trixie
23.9.6+dfsg-2.1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
condor
bionic
needs-triage
focal
needs-triage
jammy
dne
noble
needs-triage
oracular
ignored
plucky
ignored
questing
needs-triage
trusty
needs-triage
xenial
needs-triage