CVE-2021-35943 is a vulnerability in Couchbase Server
Published on September 29, 2021
Couchbase Server 6.5.x and 6.6.x through 6.6.2 has Incorrect Access Control. Externally managed users are not prevented from using an empty password, per RFC4513.
Products Associated with CVE-2021-35943
Want to know whenever a new CVE is published for Couchbase Server? stack.watch will email you.
Exploit Probability
EPSS
0.53%
Percentile
66.71%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.