Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jf69-6wxx-cpxg

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The filesystem authentication (condor_io/condor_auth_fs.cpp) in Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 uses authentication directories even when they have weak permissions, which allows remote attackers to impersonate users by renaming a user's authentication directory.

The filesystem authentication (condor_io/condor_auth_fs.cpp) in Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 uses authentication directories even when they have weak permissions, which allows remote attackers to impersonate users by renaming a user's authentication directory.

EPSS

Процентиль: 71%
0.00698
Низкий

Дефекты

CWE-287

Связанные уязвимости

ubuntu
больше 13 лет назад

The filesystem authentication (condor_io/condor_auth_fs.cpp) in Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 uses authentication directories even when they have weak permissions, which allows remote attackers to impersonate users by renaming a user's authentication directory.

redhat
больше 13 лет назад

The filesystem authentication (condor_io/condor_auth_fs.cpp) in Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 uses authentication directories even when they have weak permissions, which allows remote attackers to impersonate users by renaming a user's authentication directory.

nvd
больше 13 лет назад

The filesystem authentication (condor_io/condor_auth_fs.cpp) in Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 uses authentication directories even when they have weak permissions, which allows remote attackers to impersonate users by renaming a user's authentication directory.

debian
больше 13 лет назад

The filesystem authentication (condor_io/condor_auth_fs.cpp) in Condor ...

EPSS

Процентиль: 71%
0.00698
Низкий

Дефекты

CWE-287