Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fp87-8q28-x5v6

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

PackStack 2012.2.3 in Red Hat OpenStack Essex and Folsom can create the answer file in insecure directories such as /tmp or the current working directory, which allows local users to modify deployed systems by changing this file.

PackStack 2012.2.3 in Red Hat OpenStack Essex and Folsom can create the answer file in insecure directories such as /tmp or the current working directory, which allows local users to modify deployed systems by changing this file.

EPSS

Процентиль: 37%
0.00455
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-379

Связанные уязвимости

CVSS3: 6.1
redhat
больше 13 лет назад

A flaw was found in PackStack. This vulnerability allows a local user to modify deployed systems by changing the answer file, which is created in insecure directories such as /tmp or the current working directory. This insecure file creation could lead to unauthorized system modifications.

CVSS3: 6.1
nvd
больше 13 лет назад

A flaw was found in PackStack. This vulnerability allows a local user to modify deployed systems by changing the answer file, which is created in insecure directories such as /tmp or the current working directory. This insecure file creation could lead to unauthorized system modifications.

EPSS

Процентиль: 37%
0.00455
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-379