CVE-2021-3560
KEVHIGH 7.8EPSS 22.2%
It was found that polkit could be tricked into bypassing the credential checks for D-Bus requests, elevating the privileges of the requestor to the root user. This flaw could be used by an unprivileged local attacker to, for example, create a new local administrator. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
- CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - CVSS v3.1
- 7.8 HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - CVSS v2.0
- 7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C - EPSS
- 22.19% chance of exploitation in the next 30 days, 98th percentile
- CISA KEV
- added 2023-05-12
- Published
- 2022-02-16
- Updated
- 2025-10-21
Proof-of-concept exploits (49)
- https://github.blog/2021-06-10-privilege-escalation-polkit-root-on-linux-with-bug/
- 0dayNinja/CVE-2021-35609★ · 2021-07-30
- 0xsmirk/vehicle-kernel-exploit2★ · 2024-02-29
- Almorabea/Polkit-exploit125★ · 2021-06-20
- Antoine-MANTIS/POC-Bash-CVE-2021-35600★ · 2025-07-08
- AssassinUKG/Polkit-CVE-2021-356024★ · 2021-06-29
- BizarreLove/CVE-2021-35602★ · 2021-07-29
- CharonDefalt/linux-exploit0★ · 2023-09-27
- Kyyomaa/CVE-2021-3560-EXPLOIT2★ · 2024-04-23
- LucasPDiniz/CVE-2021-35602★ · 2024-06-30
- MandipJoshi/CVE-2021-35600★ · 2025-05-13
- NeonWhiteRabbit/CVE-2021-35603★ · 2022-02-02
- RicterZ/CVE-2021-3560-Authentication-Agent116★ · 2022-05-02
- STEALTH-Z/CVE-2021-35600★ · 2021-07-26
- TieuLong21Prosper/CVE-2021-35600★ · 2023-10-10
- TomMalvoRiddle/CVE-2021-35600★ · 2021-07-26
- UNICORDev/exploit-CVE-2021-356012★ · 2022-06-26
- WilliamQ28/Worst-autoLinPrivesc0★ · 2025-07-30
- WinMin/CVE-2021-356025★ · 2023-03-06
- aancw/polkit-auto-exploit5★ · 2021-08-24
- admin-079/CVE-2021-35600★ · 2021-07-26
- arcslash/exploit_CVE-2021-35601★ · 2025-02-18
- asepsaepdin/CVE-2021-35600★ · 2023-09-05
- asepsaepdin/CVE-2023-228096★ · 2023-07-13
- chenaotian/CVE-2021-35609★ · 2022-05-23
- cpu0x00/CVE-2021-35602★ · 2021-08-05
- curtishoughton/CVE-2021-35600★ · 2021-06-14
- f4T1H21/CVE-2021-3560-Polkit-DBus8★ · 2022-02-13
- hakivvi/CVE-2021-356040★ · 2021-06-23
- iSTAR-Lab/CVE-2021-3560_PoC0★ · 2021-06-14
- iSTARLabs/CVE-2021-3560_PoC0★ · 2021-06-14
- liamg/traitor7160★ · 2024-03-12
- markyu0401/CVE-2021-3560-Polkit-Privilege-Escalation0★ · 2024-02-24
- mikefak/XDR-PoC2★ · 2022-11-25
- mr-nobody20/CVE-2021-35602★ · 2021-08-05
- n3onhacks/CVE-2021-35603★ · 2022-02-02
- pashayogi/ROOT-CVE-2021-35600★ · 2023-08-20
- rexpository/linux-privilege-escalation9★ · 2022-04-18
- secnigma/CVE-2021-3560-Polkit-Privilege-Esclation126★ · 2022-11-16
- smile-e3/vehicle-kernel-exploit2★ · 2024-02-29
- stormshadow-ops/Local-Privileges-Escalation0★ · 2024-03-29
- swapravo/polkadots82★ · 2021-06-12
- titusG85/SideWinder-Exploit0★ · 2025-07-10
- tufanturhan/Polkit-Linux-Priv1★ · 2022-05-11
- Jeanback1/CVE-2021-3560-exploit
- SeimuPVE/CVE-2021-3560_Polkit
- WithinOneStem/POC-Bash-CVE-2021-3560
- adakoifman/CVE-2021-3560
- yutasato88/CVE-2021-3560-PolkitPrivilegeEsclation