Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gfrg-8rq8-4fc9

Опубликовано: 19 апр. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

In Brocade SANnav before Brocade SANnav v2.31 and v2.3.0a, it was observed that Docker instances inside the appliance have insecure mount points, allowing reading and writing access to sensitive files. The vulnerability could allow a sudo privileged user on the host OS to read and write access to these files.

In Brocade SANnav before Brocade SANnav v2.31 and v2.3.0a, it was observed that Docker instances inside the appliance have insecure mount points, allowing reading and writing access to sensitive files. The vulnerability could allow a sudo privileged user on the host OS to read and write access to these files.

EPSS

Процентиль: 24%
0.00084
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 4.4
nvd
почти 2 года назад

In Brocade SANnav before Brocade SANnav v2.31 and v2.3.0a, it was observed that Docker instances inside the appliance have insecure mount points, allowing reading and writing access to sensitive files. The vulnerability could allow a sudo privileged user on the host OS to read and write access to these files.

CVSS3: 4.4
fstec
почти 2 года назад

Уязвимость компонента Docker программного обеспечения для управления сетью Brocade SANnav, позволяющая нарушителю читать или изменять защищаемую информацию

EPSS

Процентиль: 24%
0.00084
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-276