In Victron Energy Venus OS through 2.72, root access is granted by default to anyone with physical access to the device. NOTE: the vendor disagrees with the reporter's opinion about an alleged "security best practices" violation
References
Link Resource
https://github.com/victronenergy/venus/issues/836 Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-07-19T16:14:50

Updated: 2021-07-19T16:14:50

Reserved: 2021-07-19T00:00:00


Link: CVE-2021-36797

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2021-07-19T17:15:11.870

Modified: 2024-05-17T01:59:00.180


Link: CVE-2021-36797

JSON object: View

cve-icon Redhat Information

No data.