Описание
The Security Manager in razorCMS before 0.4 does not verify the permissions of every file owned by the apache user account, which is inconsistent with the documentation and allows local users to have an unspecified impact.
The Security Manager in razorCMS before 0.4 does not verify the permissions of every file owned by the apache user account, which is inconsistent with the documentation and allows local users to have an unspecified impact.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2009-1462
- https://exchange.xforce.ibmcloud.com/vulnerabilities/50358
- http://marc.info/?l=full-disclosure&m=123990481506680&w=2
- http://marc.info/?l=full-disclosure&m=123998062108561&w=2
- http://razorcms.co.uk/support/viewtopic.php?f=13&t=325
- http://www.securityfocus.com/bid/34566
EPSS
Процентиль: 14%
0.00045
Низкий
CVE ID
Связанные уязвимости
nvd
почти 17 лет назад
The Security Manager in razorCMS before 0.4 does not verify the permissions of every file owned by the apache user account, which is inconsistent with the documentation and allows local users to have an unspecified impact.
EPSS
Процентиль: 14%
0.00045
Низкий