Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q7j8-2mcw-6rrm

Опубликовано: 13 мая 2025
Источник: github
Github: Не прошло ревью
CVSS4: 5.2
CVSS3: 8.8

Описание

Privilege escalation in jar_signature agent plugin in Checkmk versions <2.4.0b7 (beta), <2.3.0p32, <2.2.0p42, and 2.1.0p49 (EOL) allow user with write access to JAVA_HOME/bin directory to escalate privileges.

Privilege escalation in jar_signature agent plugin in Checkmk versions <2.4.0b7 (beta), <2.3.0p32, <2.2.0p42, and 2.1.0p49 (EOL) allow user with write access to JAVA_HOME/bin directory to escalate privileges.

EPSS

Процентиль: 16%
0.00051
Низкий

5.2 Medium

CVSS4

8.8 High

CVSS3

Дефекты

CWE-427

Связанные уязвимости

CVSS3: 8.8
ubuntu
9 месяцев назад

Privilege escalation in jar_signature agent plugin in Checkmk versions <2.4.0b7 (beta), <2.3.0p32, <2.2.0p42, and 2.1.0p49 (EOL) allow user with write access to JAVA_HOME/bin directory to escalate privileges.

CVSS3: 8.8
nvd
9 месяцев назад

Privilege escalation in jar_signature agent plugin in Checkmk versions <2.4.0b7 (beta), <2.3.0p32, <2.2.0p42, and 2.1.0p49 (EOL) allow user with write access to JAVA_HOME/bin directory to escalate privileges.

CVSS3: 8.8
debian
9 месяцев назад

Privilege escalation in jar_signature agent plugin in Checkmk versions ...

EPSS

Процентиль: 16%
0.00051
Низкий

5.2 Medium

CVSS4

8.8 High

CVSS3

Дефекты

CWE-427