CVE-2011-2907

Clusterresources Torque Resource Manager - Authentication Bypass

Title source: rule

Description

Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) 3.0.1 and earlier allows remote attackers to bypass host-based authentication and submit arbitrary jobs via a modified PBS_O_HOST variable to the qsub program.

Scores

EPSS 0.0072
EPSS Percentile 72.1%

Classification

CWE
CWE-287
Status draft

Affected Products (46)

clusterresources/torque_resource_manager < 3.0.1
clusterresources/torque_resource_manager
clusterresources/torque_resource_manager
clusterresources/torque_resource_manager
clusterresources/torque_resource_manager
clusterresources/torque_resource_manager
clusterresources/torque_resource_manager
clusterresources/torque_resource_manager
clusterresources/torque_resource_manager
clusterresources/torque_resource_manager
clusterresources/torque_resource_manager
clusterresources/torque_resource_manager
clusterresources/torque_resource_manager
clusterresources/torque_resource_manager
clusterresources/torque_resource_manager
... and 31 more

Timeline

Published Aug 15, 2011
Tracked Since Feb 18, 2026