Junglewise Threat Intelligence

CVE-2021-38557: raspap-webgui in RaspAP 2.6.6 allows attackers to execute commands as root because of the insecure sudoers permissions.

CVE-2021-38557 · Severity: low · CVSS 3.1 · Published 2021-09-02

Technologies: billz/raspap-webgui (Packagist). Vendors: Packagist.

Executive brief

raspap-webgui in RaspAP 2.6.6 allows attackers to execute commands as root because of the insecure sudoers permissions.

Affected products

  • Packagist billz/raspap-webgui

Related threats