Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6qpx-xqgc-8jcg

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Rule Set Based Access Control (RSBAC) before 1.3.5 does not properly use the Linux Kernel Crypto API for the Linux kernel 2.6.x, which allows context-dependent attackers to bypass authentication controls via unspecified vectors, possibly involving User Management password hashing and unchecked function return codes.

Rule Set Based Access Control (RSBAC) before 1.3.5 does not properly use the Linux Kernel Crypto API for the Linux kernel 2.6.x, which allows context-dependent attackers to bypass authentication controls via unspecified vectors, possibly involving User Management password hashing and unchecked function return codes.

EPSS

Процентиль: 73%
0.00745
Низкий

Связанные уязвимости

nvd
больше 18 лет назад

Rule Set Based Access Control (RSBAC) before 1.3.5 does not properly use the Linux Kernel Crypto API for the Linux kernel 2.6.x, which allows context-dependent attackers to bypass authentication controls via unspecified vectors, possibly involving User Management password hashing and unchecked function return codes.

EPSS

Процентиль: 73%
0.00745
Низкий