Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j5x5-8m8g-qv9p

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

There is an improper permission assignment vulnerability in Huawei ManageOne product. Due to improper security hardening, the process can run with a higher privilege. Successful exploit could allow certain users to do certain operations with improper permissions. Affected product versions include: ManageOne versions 8.0.0, 8.0.1.

There is an improper permission assignment vulnerability in Huawei ManageOne product. Due to improper security hardening, the process can run with a higher privilege. Successful exploit could allow certain users to do certain operations with improper permissions. Affected product versions include: ManageOne versions 8.0.0, 8.0.1.

EPSS

Процентиль: 35%
0.00146
Низкий

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 7.2
nvd
почти 5 лет назад

There is an improper permission assignment vulnerability in Huawei ManageOne product. Due to improper security hardening, the process can run with a higher privilege. Successful exploit could allow certain users to do certain operations with improper permissions. Affected product versions include: ManageOne versions 8.0.0, 8.0.1.

EPSS

Процентиль: 35%
0.00146
Низкий

Дефекты

CWE-276