Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h7mc-jr2r-m38g

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

condor_credd in HTCondor before 8.9.11 allows Directory Traversal outside the SEC_CREDENTIAL_DIRECTORY_OAUTH directory, as demonstrated by creating a file under /etc that will later be executed by root.

condor_credd in HTCondor before 8.9.11 allows Directory Traversal outside the SEC_CREDENTIAL_DIRECTORY_OAUTH directory, as demonstrated by creating a file under /etc that will later be executed by root.

EPSS

Процентиль: 86%
0.02768
Низкий

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 9.9
ubuntu
около 5 лет назад

condor_credd in HTCondor before 8.9.11 allows Directory Traversal outside the SEC_CREDENTIAL_DIRECTORY_OAUTH directory, as demonstrated by creating a file under /etc that will later be executed by root.

CVSS3: 9.9
nvd
около 5 лет назад

condor_credd in HTCondor before 8.9.11 allows Directory Traversal outside the SEC_CREDENTIAL_DIRECTORY_OAUTH directory, as demonstrated by creating a file under /etc that will later be executed by root.

CVSS3: 9.9
debian
около 5 лет назад

condor_credd in HTCondor before 8.9.11 allows Directory Traversal outs ...

EPSS

Процентиль: 86%
0.02768
Низкий

Дефекты

CWE-22