Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pfjm-7gj6-rrrx

Опубликовано: 29 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7

Описание

CWE-276: Incorrect Default Permissions vulnerability exists that could cause privilege escalation through the reverse shell when one or more executable service binaries are modified in the installation folder by a local user with normal privilege upon service restart.

CWE-276: Incorrect Default Permissions vulnerability exists that could cause privilege escalation through the reverse shell when one or more executable service binaries are modified in the installation folder by a local user with normal privilege upon service restart.

EPSS

Процентиль: 1%
0.00103
Низкий

7 High

CVSS4

Дефекты

CWE-276

Связанные уязвимости

nvd
7 месяцев назад

CWE-276: Incorrect Default Permissions vulnerability exists that could cause privilege escalation through the reverse shell when one or more executable service binaries are modified in the installation folder by a local user with normal privilege upon service restart.

CVSS3: 7.3
fstec
7 месяцев назад

Уязвимость системы автоматизации технологических процессов EcoStruxure Process Expert и EcoStruxure Process Expert for AVEVA System, связанная с некорректно используемыми стандартными разрешениями, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 1%
0.00103
Низкий

7 High

CVSS4

Дефекты

CWE-276