CVE detail
CVE-2021-27579 — CVE-2021-27579
Published 2021-02-23 · Modified 2026-06-17 · Vendor snowsoftware · Product snow_inventory_agent · Source nvd
HIGH
severity
CVSS-derived band
0.0046
EPSS probability
exploitation probability, 30d
38.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
Snow Inventory Agent through 6.7.0 on Windows uses CPUID to report on processor types and versions that may be deployed and in use across an IT environment. A privilege-escalation vulnerability exists if CPUID is enabled, and thus it should be disabled via configuration settings.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References