Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pj28-mf5p-43mf

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.4

Описание

Red Hat QuickStart Cloud Installer (QCI) uses world-readable permissions for /etc/qci/answers, which allows local users to obtain the root password for the deployed system by reading the file.

Red Hat QuickStart Cloud Installer (QCI) uses world-readable permissions for /etc/qci/answers, which allows local users to obtain the root password for the deployed system by reading the file.

EPSS

Процентиль: 12%
0.00041
Низкий

8.4 High

CVSS3

Связанные уязвимости

CVSS3: 7.1
redhat
больше 9 лет назад

Red Hat QuickStart Cloud Installer (QCI) uses world-readable permissions for /etc/qci/answers, which allows local users to obtain the root password for the deployed system by reading the file.

CVSS3: 8.4
nvd
больше 9 лет назад

Red Hat QuickStart Cloud Installer (QCI) uses world-readable permissions for /etc/qci/answers, which allows local users to obtain the root password for the deployed system by reading the file.

EPSS

Процентиль: 12%
0.00041
Низкий

8.4 High

CVSS3