Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f324-3fxj-hh78

Опубликовано: 15 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 3.3

Описание

A flaw was found in Foreman/Red Hat Satellite. Improper file permissions allow low-privileged OS users to monitor and access temporary files under /var/tmp, exposing sensitive command outputs, such as /etc/shadow. This issue can lead to information disclosure and privilege escalation if exploited effectively.

A flaw was found in Foreman/Red Hat Satellite. Improper file permissions allow low-privileged OS users to monitor and access temporary files under /var/tmp, exposing sensitive command outputs, such as /etc/shadow. This issue can lead to information disclosure and privilege escalation if exploited effectively.

EPSS

Процентиль: 8%
0.0003
Низкий

3.3 Low

CVSS3

Дефекты

CWE-922

Связанные уязвимости

CVSS3: 3.3
redhat
11 месяцев назад

A flaw was found in Foreman/Red Hat Satellite. Improper file permissions allow low-privileged OS users to monitor and access temporary files under /var/tmp, exposing sensitive command outputs, such as /etc/shadow. This issue can lead to information disclosure and privilege escalation if exploited effectively.

CVSS3: 3.3
nvd
11 месяцев назад

A flaw was found in Foreman/Red Hat Satellite. Improper file permissions allow low-privileged OS users to monitor and access temporary files under /var/tmp, exposing sensitive command outputs, such as /etc/shadow. This issue can lead to information disclosure and privilege escalation if exploited effectively.

CVSS3: 3.3
debian
11 месяцев назад

A flaw was found in Foreman/Red Hat Satellite. Improper file permissio ...

CVSS3: 3.3
fstec
11 месяцев назад

Уязвимость компонента Foreman программного средства для управления системами Red Hat Satellite, связанная с незащищенным хранением критической информации, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 8%
0.0003
Низкий

3.3 Low

CVSS3

Дефекты

CWE-922