Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9ppf-2r5r-2chh

Опубликовано: 29 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

The authfile directive in the booth config file is ignored, preventing use of authentication in communications from node to node. As a result, nodes that do not have the correct authentication key are not prevented from communicating with other nodes in the cluster.

The authfile directive in the booth config file is ignored, preventing use of authentication in communications from node to node. As a result, nodes that do not have the correct authentication key are not prevented from communicating with other nodes in the cluster.

EPSS

Процентиль: 43%
0.0021
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 3 лет назад

The authfile directive in the booth config file is ignored, preventing use of authentication in communications from node to node. As a result, nodes that do not have the correct authentication key are not prevented from communicating with other nodes in the cluster.

CVSS3: 6.5
redhat
больше 3 лет назад

The authfile directive in the booth config file is ignored, preventing use of authentication in communications from node to node. As a result, nodes that do not have the correct authentication key are not prevented from communicating with other nodes in the cluster.

CVSS3: 6.5
nvd
больше 3 лет назад

The authfile directive in the booth config file is ignored, preventing use of authentication in communications from node to node. As a result, nodes that do not have the correct authentication key are not prevented from communicating with other nodes in the cluster.

CVSS3: 6.5
msrc
почти 3 года назад

The authfile directive in the booth config file is ignored preventing use of authentication in communications from node to node. As a result nodes that do not have the correct authentication key are not prevented from communicating with other nodes in the cluster.

CVSS3: 6.5
debian
больше 3 лет назад

The authfile directive in the booth config file is ignored, preventing ...

EPSS

Процентиль: 43%
0.0021
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-287