Privilege Escalation Vulnerability in Inspur ClusterEngine
CVE-2021-27285
8.4HIGH
What is CVE-2021-27285?
A security flaw in Inspur ClusterEngine v4.0 enables attackers to escalate local privileges and execute arbitrary commands. This vulnerability arises from improper handling in the /opt/tsce4/torque6/bin/getJobsByShell function, potentially allowing unauthorized command execution by malicious actors. It is essential for users to assess their systems and take appropriate security measures to mitigate risks associated with this vulnerability.
