Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8h36-wvg6-2pj9

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Wowza Streaming Engine through 4.8.5 (in a default installation) has incorrect file permissions of configuration files in the conf/ directory. A regular local user is able to read and write to all the configuration files, e.g., modify the application server configuration.

Wowza Streaming Engine through 4.8.5 (in a default installation) has incorrect file permissions of configuration files in the conf/ directory. A regular local user is able to read and write to all the configuration files, e.g., modify the application server configuration.

EPSS

Процентиль: 10%
0.00035
Низкий

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 7.1
nvd
почти 5 лет назад

Wowza Streaming Engine through 4.8.5 (in a default installation) has incorrect file permissions of configuration files in the conf/ directory. A regular local user is able to read and write to all the configuration files, e.g., modify the application server configuration.

EPSS

Процентиль: 10%
0.00035
Низкий

Дефекты

CWE-732