Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wj8w-cmvq-mfv8

Опубликовано: 17 мар. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

A Improper Privilege Management vulnerability in the sudoers configuration in cscreen of openSUSE Factory allows any local users to gain the privileges of the tty and dialout groups and access and manipulate any running cscreen seesion. This issue affects: openSUSE Factory cscreen version 1.2-1.3 and prior versions.

A Improper Privilege Management vulnerability in the sudoers configuration in cscreen of openSUSE Factory allows any local users to gain the privileges of the tty and dialout groups and access and manipulate any running cscreen seesion. This issue affects: openSUSE Factory cscreen version 1.2-1.3 and prior versions.

EPSS

Процентиль: 11%
0.00037
Низкий

7.8 High

CVSS3

Дефекты

CWE-269
CWE-732

Связанные уязвимости

CVSS3: 5.3
nvd
почти 4 года назад

A Incorrect Permission Assignment for Critical Resource vulnerability in the sudoers configuration in cscreen of openSUSE Factory allows any local users to gain the privileges of the tty and dialout groups and access and manipulate any running cscreen seesion. This issue affects: openSUSE Factory cscreen version 1.2-1.3 and prior versions.

EPSS

Процентиль: 11%
0.00037
Низкий

7.8 High

CVSS3

Дефекты

CWE-269
CWE-732