Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5m4x-qf9v-q755

Опубликовано: 20 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.4
CVSS3: 6.7

Описание

CWE-269: Improper Privilege Management vulnerability exists that could cause privilege escalation and arbitrary code execution when a privileged engineer user with console access modifies a configuration file used by a root-level daemon to execute custom scripts.

CWE-269: Improper Privilege Management vulnerability exists that could cause privilege escalation and arbitrary code execution when a privileged engineer user with console access modifies a configuration file used by a root-level daemon to execute custom scripts.

EPSS

Процентиль: 1%
0.00012
Низкий

8.4 High

CVSS4

6.7 Medium

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 6.7
nvd
23 дня назад

CWE-269: Improper Privilege Management vulnerability exists that could cause privilege escalation and arbitrary code execution when a privileged engineer user with console access modifies a configuration file used by a root-level daemon to execute custom scripts.

EPSS

Процентиль: 1%
0.00012
Низкий

8.4 High

CVSS4

6.7 Medium

CVSS3

Дефекты

CWE-269