CVE-2021-46168 is an out-of-bounds write vulnerability in the lex() function of spinlex.c, affecting Spin v6.5.1. This medium-severity vulnerability (CVSS 5.5) requires local access and user interaction (UI:R) to achieve high availability impact (A:H), with no confidentiality or integrity impact. There is currently no evidence of active exploitation, nor are there any public exploits available in Metasploit, Nuclei, or ExploitDB. The vulnerability has garnered minimal community attention, with no social media discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
6.5.1CPE matchmatch criteria | cpe:2.3:a:spinroot:spin:6.5.1:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.