Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pcf5-9h8p-cw4v

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Soyal Technologies SOYAL 701Server 9.0.1 suffers from an elevation of privileges vulnerability which can be used by an authenticated user to change the executable file with a binary choice. The vulnerability is due to improper permissions with the 'F' flag (Full) for 'Everyone'and 'Authenticated Users' group.

Soyal Technologies SOYAL 701Server 9.0.1 suffers from an elevation of privileges vulnerability which can be used by an authenticated user to change the executable file with a binary choice. The vulnerability is due to improper permissions with the 'F' flag (Full) for 'Everyone'and 'Authenticated Users' group.

EPSS

Процентиль: 85%
0.02421
Низкий

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 8.8
nvd
почти 5 лет назад

Soyal Technologies SOYAL 701Server 9.0.1 suffers from an elevation of privileges vulnerability which can be used by an authenticated user to change the executable file with a binary choice. The vulnerability is due to improper permissions with the 'F' flag (Full) for 'Everyone'and 'Authenticated Users' group.

EPSS

Процентиль: 85%
0.02421
Низкий

Дефекты

CWE-276