Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jcr2-44h4-65m5

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Sympa through 6.2.57b.2 allows a local privilege escalation from the sympa user account to full root access by modifying the sympa.conf configuration file (which is owned by sympa) and parsing it through the setuid sympa_newaliases-wrapper executable.

Sympa through 6.2.57b.2 allows a local privilege escalation from the sympa user account to full root access by modifying the sympa.conf configuration file (which is owned by sympa) and parsing it through the setuid sympa_newaliases-wrapper executable.

EPSS

Процентиль: 13%
0.00043
Низкий

7.8 High

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 5 лет назад

Sympa through 6.2.57b.2 allows a local privilege escalation from the sympa user account to full root access by modifying the sympa.conf configuration file (which is owned by sympa) and parsing it through the setuid sympa_newaliases-wrapper executable.

CVSS3: 7.8
nvd
больше 5 лет назад

Sympa through 6.2.57b.2 allows a local privilege escalation from the sympa user account to full root access by modifying the sympa.conf configuration file (which is owned by sympa) and parsing it through the setuid sympa_newaliases-wrapper executable.

CVSS3: 7.8
debian
больше 5 лет назад

Sympa through 6.2.57b.2 allows a local privilege escalation from the s ...

EPSS

Процентиль: 13%
0.00043
Низкий

7.8 High

CVSS3

Дефекты

CWE-269