CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. Its EPSS score suggests a 53.8% probability of exploitation in the next 30 days.
CVE
CVE-2021-27651
Severity
CRITICAL
CVSS
9.8
EPSS
53.84%
Original NVD Description
In versions 8.2.1 through 8.5.2 of Pega Infinity, the password reset functionality for local accounts can be used to bypass local authentication checks.
Related CVEs
Other vulnerabilities affecting the same vendor(s)