Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v7gp-f4wc-h5w4

Опубликовано: 22 янв. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

CloudLinux CageFS 7.1.1-1 or below passes the authentication token as command line argument. In some configurations this allows local users to view it via the process list and gain code execution as another user.

CloudLinux CageFS 7.1.1-1 or below passes the authentication token as command line argument. In some configurations this allows local users to view it via the process list and gain code execution as another user.

EPSS

Процентиль: 22%
0.00073
Низкий

7.8 High

CVSS3

Дефекты

CWE-200
CWE-214

Связанные уязвимости

CVSS3: 7.8
nvd
около 2 лет назад

CloudLinux CageFS 7.1.1-1 or below passes the authentication token as a command line argument. In some configurations this allows local users to view the authentication token via the process list and gain code execution as another user.

EPSS

Процентиль: 22%
0.00073
Низкий

7.8 High

CVSS3

Дефекты

CWE-200
CWE-214