Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Htcondor HIGH 8.1
CVE-2025-30093

HTCondor 23.0.x before 23.0.22, 23.10.x before 23.10.22, 24.0.x before 24.0.6, and 24.6.x before 24.6.1 allows authenticated attackers to bypass auth…

Fix: 23.0.22 / 23.10.22+
Fix from $1,950 2025-03-27
Htcondor HIGH 7.4
CVE-2021-45104

An issue was discovered in HTCondor 9.0.x before 9.0.10 and 9.1.x before 9.5.1. An attacker who can capture HTCondor network data can interfere with …

Fix: 9.0.10 / 9.6.0+
Fix from $1,950 2022-04-06
Htcondor HIGH 8.1
CVE-2021-45103

An issue was discovered in HTCondor 9.0.x before 9.0.10 and 9.1.x before 9.5.1. An attacker can access files stored in S3 cloud storage that a user h…

Fix: 9.0.10 / 9.6.0+
Fix from $1,950 2022-04-06
Htcondor HIGH 8.8
CVE-2021-45102

An issue was discovered in HTCondor 9.0.x before 9.0.4 and 9.1.x before 9.1.2. When authenticating to an HTCondor daemon using a SciToken, a user may…

Mitigation only
Fix from $1,950 2021-12-16
Htcondor HIGH 8.1
CVE-2021-45101

An issue was discovered in HTCondor before 8.8.15, 9.0.x before 9.0.4, and 9.1.x before 9.1.2. Using standard command-line tools, a user with only RE…

Fix: after 9.0.2
Fix from $1,950 2021-12-16
Htcondor CRITICAL 9.9
CVE-2021-25311

condor_credd in HTCondor before 8.9.11 allows Directory Traversal outside the SEC_CREDENTIAL_DIRECTORY_OAUTH directory, as demonstrated by creating a…

Fix: 8.9.11+
Fix from $2,300 2021-01-27
Htcondor HIGH 8.8
CVE-2021-25312

HTCondor before 8.9.11 allows a user to submit a job as another user on the system, because of a flaw in the IDTOKENS authentication method.

Fix: 8.9.11+
Fix from $1,950 2021-01-27
Htcondor HIGH 8.8
CVE-2014-8126

The scheduler in HTCondor before 8.2.6 allows remote authenticated users to execute arbitrary code.

Fix: 8.2.6+
Fix from $1,950 2020-01-31
Htcondor HIGH 8.8
CVE-2012-3490

The (1) my_popenv_impl and (2) my_spawnv functions in src/condor_utils/my_popen.cpp and the (3) systemCommand function in condor_vm-gahp/vmgahp_commo…

Fix: 7.6.10 / 7.8.4+
Fix from $1,950 2020-01-09
Htcondor MEDIUM 6.5
CVE-2017-16816

The condor_schedd component in HTCondor before 8.6.8 and 8.7.x before 8.7.5 allows remote authenticated users to cause a denial of service (daemon cr…

Fix: 8.6.8 / 8.7.5+
Fix from $1,600 2018-07-05