Vulnerabilities > Wisc > Htcondor > 8.9.10

DATE CVE VULNERABILITY TITLE RISK
2022-04-06 CVE-2021-45104 Cleartext Transmission of Sensitive Information vulnerability in Wisc Htcondor
An issue was discovered in HTCondor 9.0.x before 9.0.10 and 9.1.x before 9.5.1.
network
wisc CWE-319
5.8
2022-04-06 CVE-2021-45103 Information Exposure Through Log Files vulnerability in Wisc Htcondor
An issue was discovered in HTCondor 9.0.x before 9.0.10 and 9.1.x before 9.5.1.
network
low complexity
wisc CWE-532
5.5
2021-01-27 CVE-2021-25312 Missing Authentication for Critical Function vulnerability in Wisc Htcondor
HTCondor before 8.9.11 allows a user to submit a job as another user on the system, because of a flaw in the IDTOKENS authentication method.
network
low complexity
wisc CWE-306
6.5
2021-01-27 CVE-2021-25311 Path Traversal vulnerability in Wisc Htcondor
condor_credd in HTCondor before 8.9.11 allows Directory Traversal outside the SEC_CREDENTIAL_DIRECTORY_OAUTH directory, as demonstrated by creating a file under /etc that will later be executed by root.
network
low complexity
wisc CWE-22
critical
9.0