Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2002-1672

Опубликовано: 31 дек. 2002
Источник: debian
EPSS Низкий

Описание

Webmin 0.92, when installed from an RPM, creates /var/webmin with insecure permissions (world readable), which could allow local users to read the root user's cookie-based authentication credentials and possibly hijack the root user's session using the credentials.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
webminnot-affectedpackage

Примечания

  • Permissions of Debian's webmin package look sane and FHS compliant

EPSS

Процентиль: 18%
0.00056
Низкий

Связанные уязвимости

nvd
больше 22 лет назад

Webmin 0.92, when installed from an RPM, creates /var/webmin with insecure permissions (world readable), which could allow local users to read the root user's cookie-based authentication credentials and possibly hijack the root user's session using the credentials.

github
больше 3 лет назад

Webmin 0.92, when installed from an RPM, creates /var/webmin with insecure permissions (world readable), which could allow local users to read the root user's cookie-based authentication credentials and possibly hijack the root user's session using the credentials.

EPSS

Процентиль: 18%
0.00056
Низкий