Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2021-36377
Fossil before 2.14.2 and 2.15.x before 2.15.2 often skips the hostname check during TLS certificate validation.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.001
EPSS Ranking
29.4%
CVSS Severity
CVSS v3 Score
7.5
CVSS v2 Score
5.0
References
https://fossil-scm.org/forum/forumpost/8d367e16f53d93c789d70bd3bf2c9587227bbd5c6a7b8e512cccd79007536036
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JBTRZ5HCOUTIIKJF3T37NORI4P7EVYCY/
https://fossil-scm.org/forum/forumpost/8d367e16f53d93c789d70bd3bf2c9587227bbd5c6a7b8e512cccd79007536036
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JBTRZ5HCOUTIIKJF3T37NORI4P7EVYCY/
Products affected by CVE-2021-36377
Fossil-Scm
»
Fossil
»
Version:
1.18
cpe:2.3:a:fossil-scm:fossil:1.18
Fossil-Scm
»
Fossil
»
Version:
1.19
cpe:2.3:a:fossil-scm:fossil:1.19
Fossil-Scm
»
Fossil
»
Version:
1.20
cpe:2.3:a:fossil-scm:fossil:1.20
Fossil-Scm
»
Fossil
»
Version:
1.21
cpe:2.3:a:fossil-scm:fossil:1.21
Fossil-Scm
»
Fossil
»
Version:
1.22
cpe:2.3:a:fossil-scm:fossil:1.22
Fossil-Scm
»
Fossil
»
Version:
1.23
cpe:2.3:a:fossil-scm:fossil:1.23
Fossil-Scm
»
Fossil
»
Version:
1.24
cpe:2.3:a:fossil-scm:fossil:1.24
Fossil-Scm
»
Fossil
»
Version:
1.25
cpe:2.3:a:fossil-scm:fossil:1.25
Fossil-Scm
»
Fossil
»
Version:
1.26
cpe:2.3:a:fossil-scm:fossil:1.26
Fossil-Scm
»
Fossil
»
Version:
1.27
cpe:2.3:a:fossil-scm:fossil:1.27
Fossil-Scm
»
Fossil
»
Version:
1.28
cpe:2.3:a:fossil-scm:fossil:1.28
Fossil-Scm
»
Fossil
»
Version:
1.29
cpe:2.3:a:fossil-scm:fossil:1.29
Fossil-Scm
»
Fossil
»
Version:
1.30
cpe:2.3:a:fossil-scm:fossil:1.30
Fossil-Scm
»
Fossil
»
Version:
1.31
cpe:2.3:a:fossil-scm:fossil:1.31
Fossil-Scm
»
Fossil
»
Version:
1.32
cpe:2.3:a:fossil-scm:fossil:1.32
Fossil-Scm
»
Fossil
»
Version:
1.33
cpe:2.3:a:fossil-scm:fossil:1.33
Fossil-Scm
»
Fossil
»
Version:
1.34
cpe:2.3:a:fossil-scm:fossil:1.34
Fossil-Scm
»
Fossil
»
Version:
1.35
cpe:2.3:a:fossil-scm:fossil:1.35
Fossil-Scm
»
Fossil
»
Version:
1.36
cpe:2.3:a:fossil-scm:fossil:1.36
Fossil-Scm
»
Fossil
»
Version:
1.37
cpe:2.3:a:fossil-scm:fossil:1.37
Fossil-Scm
»
Fossil
»
Version:
2.0
cpe:2.3:a:fossil-scm:fossil:2.0
Fossil-Scm
»
Fossil
»
Version:
2.1
cpe:2.3:a:fossil-scm:fossil:2.1
Fossil-Scm
»
Fossil
»
Version:
2.10.0
cpe:2.3:a:fossil-scm:fossil:2.10.0
Fossil-Scm
»
Fossil
»
Version:
2.10.1
cpe:2.3:a:fossil-scm:fossil:2.10.1
Fossil-Scm
»
Fossil
»
Version:
2.10.2
cpe:2.3:a:fossil-scm:fossil:2.10.2
Fossil-Scm
»
Fossil
»
Version:
2.11.0
cpe:2.3:a:fossil-scm:fossil:2.11.0
Fossil-Scm
»
Fossil
»
Version:
2.11.1
cpe:2.3:a:fossil-scm:fossil:2.11.1
Fossil-Scm
»
Fossil
»
Version:
2.11.2
cpe:2.3:a:fossil-scm:fossil:2.11.2
Fossil-Scm
»
Fossil
»
Version:
2.12.0
cpe:2.3:a:fossil-scm:fossil:2.12.0
Fossil-Scm
»
Fossil
»
Version:
2.12.1
cpe:2.3:a:fossil-scm:fossil:2.12.1
Fossil-Scm
»
Fossil
»
Version:
2.13
cpe:2.3:a:fossil-scm:fossil:2.13
Fossil-Scm
»
Fossil
»
Version:
2.14
cpe:2.3:a:fossil-scm:fossil:2.14
Fossil-Scm
»
Fossil
»
Version:
2.14.1
cpe:2.3:a:fossil-scm:fossil:2.14.1
Fossil-Scm
»
Fossil
»
Version:
2.15.1
cpe:2.3:a:fossil-scm:fossil:2.15.1
Fossil-Scm
»
Fossil
»
Version:
2.2
cpe:2.3:a:fossil-scm:fossil:2.2
Fossil-Scm
»
Fossil
»
Version:
2.3
cpe:2.3:a:fossil-scm:fossil:2.3
Fossil-Scm
»
Fossil
»
Version:
2.4
cpe:2.3:a:fossil-scm:fossil:2.4
Fossil-Scm
»
Fossil
»
Version:
2.5
cpe:2.3:a:fossil-scm:fossil:2.5
Fossil-Scm
»
Fossil
»
Version:
2.6
cpe:2.3:a:fossil-scm:fossil:2.6
Fossil-Scm
»
Fossil
»
Version:
2.7
cpe:2.3:a:fossil-scm:fossil:2.7
Fossil-Scm
»
Fossil
»
Version:
2.8
cpe:2.3:a:fossil-scm:fossil:2.8
Fossil-Scm
»
Fossil
»
Version:
2.9
cpe:2.3:a:fossil-scm:fossil:2.9
Fedoraproject
»
Fedora
»
Version:
34
cpe:2.3:o:fedoraproject:fedora:34
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved