Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mmq3-hv8g-6g7c

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An unspecified Enghouse Interactive Professional Services "addon product" in Enghouse Interactive IVR Pro (VIP2000) 9.0.3 (rel903), when using OpenVZ and fallback customization, uses the same SSH private key across different customers' installations, which allows remote attackers to gain privileges by leveraging knowledge of this key.

An unspecified Enghouse Interactive Professional Services "addon product" in Enghouse Interactive IVR Pro (VIP2000) 9.0.3 (rel903), when using OpenVZ and fallback customization, uses the same SSH private key across different customers' installations, which allows remote attackers to gain privileges by leveraging knowledge of this key.

EPSS

Процентиль: 79%
0.01305
Низкий

Связанные уязвимости

nvd
около 12 лет назад

An unspecified Enghouse Interactive Professional Services "addon product" in Enghouse Interactive IVR Pro (VIP2000) 9.0.3 (rel903), when using OpenVZ and fallback customization, uses the same SSH private key across different customers' installations, which allows remote attackers to gain privileges by leveraging knowledge of this key.

EPSS

Процентиль: 79%
0.01305
Низкий