CVE-2021-36797

In Victron Energy Venus OS through 2.72, root access is granted by default to anyone with physical access to the device. NOTE: the vendor disagrees with the reporter's opinion about an alleged "security best practices" violation
References
Link Resource
https://github.com/victronenergy/venus/issues/836 Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:o:victronenergy:venus_os:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2021-07-19 17:15

Updated : 2024-05-17 01:59


NVD link : CVE-2021-36797

Mitre link : CVE-2021-36797

CVE.ORG link : CVE-2021-36797


JSON object : View

Products Affected

victronenergy

  • venus_os