CVE-2021-3560

HIGH KEV

polkit - Privilege Escalation

Title source: llm

Description

It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privileges of the requestor to the root user. This flaw could be used by an unprivileged local attacker to, for example, create a new local administrator. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Exploits (36)

nomisec WORKING POC 125 stars
by Almorabea · local
https://github.com/Almorabea/Polkit-exploit
nomisec WORKING POC 124 stars
by secnigma · local
https://github.com/secnigma/CVE-2021-3560-Polkit-Privilege-Esclation
nomisec WORKING POC 117 stars
by RicterZ · local
https://github.com/RicterZ/CVE-2021-3560-Authentication-Agent
nomisec WRITEUP 82 stars
by swapravo · local
https://github.com/swapravo/polkadots
nomisec WORKING POC 38 stars
by hakivvi · local
https://github.com/hakivvi/CVE-2021-3560
nomisec WORKING POC 24 stars
by winmin · poc
https://github.com/winmin/CVE-2021-3560
nomisec WRITEUP 24 stars
by AssassinUKG · local
https://github.com/AssassinUKG/Polkit-CVE-2021-3560
nomisec WORKING POC 11 stars
by UNICORDev · local
https://github.com/UNICORDev/exploit-CVE-2021-3560
nomisec WORKING POC 9 stars
by 0dayNinja · local
https://github.com/0dayNinja/CVE-2021-3560
nomisec WRITEUP 9 stars
by chenaotian · poc
https://github.com/chenaotian/CVE-2021-3560
nomisec WORKING POC 5 stars
by aancw · local
https://github.com/aancw/polkit-auto-exploit
nomisec WORKING POC 2 stars
by cpu0x00 · poc
https://github.com/cpu0x00/CVE-2021-3560
nomisec WORKING POC 2 stars
by BizarreLove · local
https://github.com/BizarreLove/CVE-2021-3560
nomisec WORKING POC 2 stars
by Kyyomaa · local
https://github.com/Kyyomaa/CVE-2021-3560-EXPLOIT
nomisec WRITEUP 2 stars
by LucasPDiniz · local
https://github.com/LucasPDiniz/CVE-2021-3560
nomisec WORKING POC
by arcslash · local
https://github.com/arcslash/exploit_CVE-2021-3560
nomisec WORKING POC
by MandipJoshi · local
https://github.com/MandipJoshi/CVE-2021-3560
nomisec WORKING POC
by Antoine-MANTIS · local
https://github.com/Antoine-MANTIS/POC-Bash-CVE-2021-3560
nomisec WORKING POC
by m4lk3rnel · local
https://github.com/m4lk3rnel/CVE-2021-3560
nomisec WORKING POC
by markyu0401 · poc
https://github.com/markyu0401/CVE-2021-3560-Polkit-Privilege-Escalation
nomisec WRITEUP
by titusG85 · poc
https://github.com/titusG85/SideWinder-Exploit
nomisec WORKING POC
by admin-079 · poc
https://github.com/admin-079/CVE-2021-3560
nomisec WORKING POC
by SeimuPVE · local
https://github.com/SeimuPVE/CVE-2021-3560_Polkit
gitlab WORKING POC
by f4T1H21 · local
https://gitlab.com/f4T1H21/CVE-2021-3560-Polkit-DBus
nomisec WRITEUP
by realatharva15 · poc
https://github.com/realatharva15/polkit-CVE-2021-3560_writeup
nomisec WORKING POC
by pashayogi · local
https://github.com/pashayogi/ROOT-CVE-2021-3560
nomisec WORKING POC
by TieuLong21Prosper · local
https://github.com/TieuLong21Prosper/CVE-2021-3560
nomisec WORKING POC
by curtishoughton · local
https://github.com/curtishoughton/CVE-2021-3560
nomisec WORKING POC
by asepsaepdin · local
https://github.com/asepsaepdin/CVE-2021-3560
nomisec WORKING POC
by iSTAR-Lab · poc
https://github.com/iSTAR-Lab/CVE-2021-3560_PoC
exploitdb WORKING POC VERIFIED
by J Smith · bashlocallinux
https://www.exploit-db.com/exploits/50011
vulncheck_xdb WORKING POC
local
https://github.com/WinMin/CVE-2021-3560
vulncheck_xdb WORKING POC
local
https://github.com/f4T1H21/CVE-2021-3560-Polkit-DBus
metasploit WORKING POC EXCELLENT
by Kevin Backhouse, Spencer McIntyre, jheysel-r7 · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/local/polkit_dbus_auth_bypass.rb

Scores

CVSS v3 7.8
EPSS 0.1087
EPSS Percentile 93.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Exploitation Intel

CISA KEV 2023-05-12
VulnCheck KEV 2023-05-12
InTheWild.io 2023-05-12
ENISA EUVD EUVD-2021-26871

Classification

CWE
CWE-754 CWE-863
Status published

Affected Products (6)

polkit_project/polkit < 0.119
debian/debian_linux
canonical/ubuntu_linux
redhat/virtualization
redhat/virtualization_host
redhat/openshift_container_platform

Timeline

Published Feb 16, 2022
KEV Added May 12, 2023
Tracked Since Feb 18, 2026