Vulnerability Description
Insecure permissions in Confluent Ansible (cp-ansible) 5.5.0, 5.5.1, 5.5.2 and 6.0.0 allows local attackers to access some sensitive information (private keys, state database).
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Confluent | Cp-Ansible | 5.5.0 |
Related Weaknesses (CWE)
References
- https://confluent.ioVendor Advisory
- https://www.detack.de/en/cve-2021-33923Third Party Advisory
- https://confluent.ioVendor Advisory
- https://www.detack.de/en/cve-2021-33923Third Party Advisory
FAQ
What is CVE-2021-33923?
CVE-2021-33923 is a vulnerability with a CVSS score of 5.5 (MEDIUM). Insecure permissions in Confluent Ansible (cp-ansible) 5.5.0, 5.5.1, 5.5.2 and 6.0.0 allows local attackers to access some sensitive information (private keys, state database).
How severe is CVE-2021-33923?
CVE-2021-33923 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-33923?
Check the references section above for vendor advisories and patch information. Affected products include: Confluent Cp-Ansible.