Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3gw6-8wwv-rhr2

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.3

Описание

Exim 4 before 4.94.2 has Execution with Unnecessary Privileges. By leveraging a delete_pid_file race condition, a local user can delete arbitrary files as root. This involves the -oP and -oPX options.

Exim 4 before 4.94.2 has Execution with Unnecessary Privileges. By leveraging a delete_pid_file race condition, a local user can delete arbitrary files as root. This involves the -oP and -oPX options.

EPSS

Процентиль: 33%
0.0013
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 6.3
ubuntu
почти 5 лет назад

Exim 4 before 4.94.2 has Execution with Unnecessary Privileges. By leveraging a delete_pid_file race condition, a local user can delete arbitrary files as root. This involves the -oP and -oPX options.

CVSS3: 6.3
nvd
почти 5 лет назад

Exim 4 before 4.94.2 has Execution with Unnecessary Privileges. By leveraging a delete_pid_file race condition, a local user can delete arbitrary files as root. This involves the -oP and -oPX options.

CVSS3: 6.3
debian
почти 5 лет назад

Exim 4 before 4.94.2 has Execution with Unnecessary Privileges. By lev ...

CVSS3: 3.3
fstec
почти 5 лет назад

Уязвимость агента пересылки сообщений Exim, связанная с ошибками управления привилегиями, позволяющая нарушителю удалять произвольные файлы в системе

EPSS

Процентиль: 33%
0.0013
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-269