Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-777c-xcpc-mxhx

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Iteris Vantage Velocity Field Unit 2.3.1 and 2.4.2 devices have world-writable permissions for the /root/cleardata.pl (executed as root by crond) and /root/loadperl.sh (executed as root at boot time) scripts.

Iteris Vantage Velocity Field Unit 2.3.1 and 2.4.2 devices have world-writable permissions for the /root/cleardata.pl (executed as root by crond) and /root/loadperl.sh (executed as root at boot time) scripts.

EPSS

Процентиль: 56%
0.00331
Низкий

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 9.8
nvd
почти 6 лет назад

Iteris Vantage Velocity Field Unit 2.3.1 and 2.4.2 devices have world-writable permissions for the /root/cleardata.pl (executed as root by crond) and /root/loadperl.sh (executed as root at boot time) scripts.

EPSS

Процентиль: 56%
0.00331
Низкий

Дефекты

CWE-269