---
id: CVE-2021-29005
title: Insecure permission of chmod command on rConfig server 3.9.6 exists
summary: >-
  Insecure permission of chmod command on rConfig server 3.9.6 exists. After
  installing rConfig apache user may execute chmod as root without password
  which may let an attacker with low privilege to gain root access on server.
severity: high
cvss: 8.8
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-276
vendor: rconfig
product: rconfig
affected:
  - rconfig = 3.9.6
published: '2021-10-11'
updated: '2026-07-05'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2021-29005'
references:
  - url: 'https://github.com/mrojz/rconfig-exploit/blob/main/CVE-2021-29005-POC.sh'
    label: cve@mitre.org
  - url: 'http://rconfig.com'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: 'https://github.com/mrojz/rconfig-exploit/blob/main/CVE-2021-29005-POC.sh'
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
epss: 0.02154
epssPercentile: 0.81365
ingestedAt: '2026-07-06T17:03:23.590Z'
---

## Overview

Insecure permission of chmod command on rConfig server 3.9.6 exists. After installing rConfig apache user may execute chmod as root without password which may let an attacker with low privilege to gain root access on server.

## Affected

- `rconfig = 3.9.6`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
