Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9582-4m3g-fg43

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Webmin 0.92, when installed from an RPM, creates /var/webmin with insecure permissions (world readable), which could allow local users to read the root user's cookie-based authentication credentials and possibly hijack the root user's session using the credentials.

Webmin 0.92, when installed from an RPM, creates /var/webmin with insecure permissions (world readable), which could allow local users to read the root user's cookie-based authentication credentials and possibly hijack the root user's session using the credentials.

EPSS

Процентиль: 18%
0.00056
Низкий

Связанные уязвимости

nvd
больше 22 лет назад

Webmin 0.92, when installed from an RPM, creates /var/webmin with insecure permissions (world readable), which could allow local users to read the root user's cookie-based authentication credentials and possibly hijack the root user's session using the credentials.

debian
больше 22 лет назад

Webmin 0.92, when installed from an RPM, creates /var/webmin with inse ...

EPSS

Процентиль: 18%
0.00056
Низкий