Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p8ph-fqxj-xw9c

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

The packaging of NextCloud in openSUSE used /srv/www/htdocs in an unsafe manner, which could have allowed scripts running as wwwrun user to escalate privileges to root during nextcloud package upgrade.

The packaging of NextCloud in openSUSE used /srv/www/htdocs in an unsafe manner, which could have allowed scripts running as wwwrun user to escalate privileges to root during nextcloud package upgrade.

EPSS

Процентиль: 43%
0.0021
Низкий

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
nvd
почти 8 лет назад

The packaging of NextCloud in openSUSE used /srv/www/htdocs in an unsafe manner, which could have allowed scripts running as wwwrun user to escalate privileges to root during nextcloud package upgrade.

suse-cvrf
больше 8 лет назад

Security update for nextcloud

CVSS3: 8.8
fstec
почти 9 лет назад

Уязвимость облачной платформы NextCloud операционной системы OpenSUSE Leap, позволяющая нарушителю получить привилегии root

EPSS

Процентиль: 43%
0.0021
Низкий

8.8 High

CVSS3