Vulnerability Details CVE-2021-32849
Gerapy is a distributed crawler management framework. Prior to version 0.9.9, an authenticated user could execute arbitrary commands. This issue is fixed in version 0.9.9. There are no known workarounds.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.756
EPSS Ranking 98.8%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 9.0
Products affected by CVE-2021-32849
-
cpe:2.3:a:gerapy:gerapy:0.0.0
-
cpe:2.3:a:gerapy:gerapy:0.7.8
-
cpe:2.3:a:gerapy:gerapy:0.8.0
-
cpe:2.3:a:gerapy:gerapy:0.8.2
-
cpe:2.3:a:gerapy:gerapy:0.8.3
-
cpe:2.3:a:gerapy:gerapy:0.8.4
-
cpe:2.3:a:gerapy:gerapy:0.8.5
-
cpe:2.3:a:gerapy:gerapy:0.8.6
-
cpe:2.3:a:gerapy:gerapy:0.8.7
-
cpe:2.3:a:gerapy:gerapy:0.8.8
-
cpe:2.3:a:gerapy:gerapy:0.9.0
-
cpe:2.3:a:gerapy:gerapy:0.9.1
-
cpe:2.3:a:gerapy:gerapy:0.9.2
-
cpe:2.3:a:gerapy:gerapy:0.9.3
-
cpe:2.3:a:gerapy:gerapy:0.9.4
-
cpe:2.3:a:gerapy:gerapy:0.9.5
-
cpe:2.3:a:gerapy:gerapy:0.9.6
-
cpe:2.3:a:gerapy:gerapy:0.9.7
-
cpe:2.3:a:gerapy:gerapy:0.9.8