wisc records
12 published records for vendor wisc.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 58.3%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-20 Improper Input Validation2
- CWE-863 Incorrect Authorization2
- CWE-287 Improper Authentication1
- CWE-319 Cleartext Transmission of Sensitive Information1
- CWE-532 Insertion of Sensitive Information into Log File1
- CWE-306 Missing Authentication for Critical Function1
The weakness classes this vendor ships most often: where to look.
CWEAll records
12 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2021-25311No exploit | condor_credd in HTCondor before 8.9.11 allows Directory Traversal outside the SEC_CREDENTIAL_DIRECTORY_OAUTH directory, as demonstrated by cwisc · htcondor · CWE-22 | Critical9.9 | — | 3.2% | Jan 27, 2021 |
40Plan | CVE-2019-18823No exploit | HTCondor up to and including stable series 8.8.6 and development series 8.9.4 has Incorrect Access Control.wisc · htcondor · CWE-287 | Critical9.8 | — | 2.8% | Apr 27, 2020 |
36Monitor | CVE-2012-3490No exploit | The (1) my_popenv_impl and (2) my_spawnv functions in src/condor_utils/my_popen.cpp and the (3) systemCommand function in condor_vm-gahp/vmgwisc · htcondor | High8.8 | — | 3.6% | Jan 9, 2020 |
36Monitor | CVE-2014-8126No exploit | The scheduler in HTCondor before 8.2.6 allows remote authenticated users to execute arbitrary code.wisc · htcondor · CWE-20 | High8.8 | — | 3.1% | Jan 31, 2020 |
35Monitor | CVE-2022-26110No exploit | An issue was discovered in HTCondor 8.8.x before 8.8.16, 9.0.x before 9.0.10, and 9.1.x before 9.6.0.wisc · htcondor | High8.8 | — | 1.5% | Apr 5, 2022 |
35Monitor | CVE-2021-25312No exploit | HTCondor before 8.9.11 allows a user to submit a job as another user on the system, because of a flaw in the IDTOKENS authentication method.wisc · htcondor · CWE-306 | High8.8 | — | 1.0% | Jan 27, 2021 |
35Monitor | CVE-2021-45102No exploit | An issue was discovered in HTCondor 9.0.x before 9.0.4 and 9.1.x before 9.1.2.wisc · htcondor · CWE-863 | High8.8 | — | 0.9% | Dec 16, 2021 |
32Monitor | CVE-2021-45101No exploit | An issue was discovered in HTCondor before 8.8.15, 9.0.x before 9.0.4, and 9.1.x before 9.1.2.wisc · htcondor | High8.1 | — | 0.9% | Dec 16, 2021 |
32Monitor | CVE-2021-45103No exploit | An issue was discovered in HTCondor 9.0.x before 9.0.10 and 9.1.x before 9.5.1.wisc · htcondor · CWE-532 | High8.1 | — | 0.9% | Apr 5, 2022 |
32Monitor | CVE-2025-30093No exploit | HTCondor 23.0.x before 23.0.22, 23.10.x before 23.10.22, 24.0.x before 24.0.6, and 24.6.x before 24.6.1 allows authenticated attackers to bywisc · htcondor · CWE-863 | High8.1 | — | 0.4% | Mar 27, 2025 |
29Monitor | CVE-2021-45104No exploit | An issue was discovered in HTCondor 9.0.x before 9.0.10 and 9.1.x before 9.5.1.wisc · htcondor · CWE-319 | High7.4 | — | 0.6% | Apr 5, 2022 |
26Monitor | CVE-2017-16816No exploit | The condor_schedd component in HTCondor before 8.6.8 and 8.7.x before 8.7.5 allows remote authenticated users to cause a denial of service (wisc · htcondor · CWE-20 | Medium6.5 | — | 1.2% | Jul 5, 2018 |
- CVE-2021-2531140Plan
condor_credd in HTCondor before 8.9.11 allows Directory Traversal outside the SEC_CREDENTIAL_DIRECTORY_OAUTH directory, as demonstrated by c
CriticalCVSS 9.9No exploitEPSS 3%wisc · htcondorJan 27, 2021
- CVE-2019-1882340Plan
HTCondor up to and including stable series 8.8.6 and development series 8.9.4 has Incorrect Access Control.
CriticalCVSS 9.8No exploitEPSS 3%wisc · htcondorApr 27, 2020
- CVE-2012-349036Monitor
The (1) my_popenv_impl and (2) my_spawnv functions in src/condor_utils/my_popen.cpp and the (3) systemCommand function in condor_vm-gahp/vmg
HighCVSS 8.8No exploitEPSS 4%wisc · htcondorJan 9, 2020
- CVE-2014-812636Monitor
The scheduler in HTCondor before 8.2.6 allows remote authenticated users to execute arbitrary code.
HighCVSS 8.8No exploitEPSS 3%wisc · htcondorJan 31, 2020
- CVE-2022-2611035Monitor
An issue was discovered in HTCondor 8.8.x before 8.8.16, 9.0.x before 9.0.10, and 9.1.x before 9.6.0.
HighCVSS 8.8No exploitEPSS 1%wisc · htcondorApr 5, 2022
- CVE-2021-2531235Monitor
HTCondor before 8.9.11 allows a user to submit a job as another user on the system, because of a flaw in the IDTOKENS authentication method.
HighCVSS 8.8No exploitEPSS 1%wisc · htcondorJan 27, 2021
- CVE-2021-4510235Monitor
An issue was discovered in HTCondor 9.0.x before 9.0.4 and 9.1.x before 9.1.2.
HighCVSS 8.8No exploitEPSS 1%wisc · htcondorDec 16, 2021
- CVE-2021-4510132Monitor
An issue was discovered in HTCondor before 8.8.15, 9.0.x before 9.0.4, and 9.1.x before 9.1.2.
HighCVSS 8.1No exploitEPSS 1%wisc · htcondorDec 16, 2021
- CVE-2021-4510332Monitor
An issue was discovered in HTCondor 9.0.x before 9.0.10 and 9.1.x before 9.5.1.
HighCVSS 8.1No exploitEPSS 1%wisc · htcondorApr 5, 2022
- CVE-2025-3009332Monitor
HTCondor 23.0.x before 23.0.22, 23.10.x before 23.10.22, 24.0.x before 24.0.6, and 24.6.x before 24.6.1 allows authenticated attackers to by
HighCVSS 8.1No exploitEPSS 0%wisc · htcondorMar 27, 2025
- CVE-2021-4510429Monitor
An issue was discovered in HTCondor 9.0.x before 9.0.10 and 9.1.x before 9.5.1.
HighCVSS 7.4No exploitEPSS 1%wisc · htcondorApr 5, 2022
- CVE-2017-1681626Monitor
The condor_schedd component in HTCondor before 8.6.8 and 8.7.x before 8.7.5 allows remote authenticated users to cause a denial of service (
MediumCVSS 6.5No exploitEPSS 1%wisc · htcondorJul 5, 2018