Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mrff-j2hx-cpjj

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Issues were discovered in Open DHCP Server (Regular) 1.75 and Open DHCP Server (LDAP Based) 0.1Beta. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the OpenDHCPServer.exe (Regular) or the OpenDHCPLdap.exe (LDAP Based) binary.

Issues were discovered in Open DHCP Server (Regular) 1.75 and Open DHCP Server (LDAP Based) 0.1Beta. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the OpenDHCPServer.exe (Regular) or the OpenDHCPLdap.exe (LDAP Based) binary.

EPSS

Процентиль: 14%
0.00045
Низкий

7.8 High

CVSS3

Дефекты

CWE-269
CWE-732

Связанные уязвимости

CVSS3: 7.8
nvd
больше 5 лет назад

Issues were discovered in Open DHCP Server (Regular) 1.75 and Open DHCP Server (LDAP Based) 0.1Beta. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the OpenDHCPServer.exe (Regular) or the OpenDHCPLdap.exe (LDAP Based) binary.

EPSS

Процентиль: 14%
0.00045
Низкий

7.8 High

CVSS3

Дефекты

CWE-269
CWE-732