Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r563-x828-cr83

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Sera 1.2 stores the user's login password in plain text in their home directory. This makes privilege escalation trivial and also exposes the user and system keychains to local attacks.

Sera 1.2 stores the user's login password in plain text in their home directory. This makes privilege escalation trivial and also exposes the user and system keychains to local attacks.

EPSS

Процентиль: 49%
0.00256
Низкий

7.8 High

CVSS3

Дефекты

CWE-522

Связанные уязвимости

CVSS3: 7.8
nvd
больше 8 лет назад

Sera 1.2 stores the user's login password in plain text in their home directory. This makes privilege escalation trivial and also exposes the user and system keychains to local attacks.

EPSS

Процентиль: 49%
0.00256
Низкий

7.8 High

CVSS3

Дефекты

CWE-522