Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xcjc-c88c-v52w

Опубликовано: 22 янв. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

CloudLinux CageFS 7.0.8-2 or below insufficiently restricts file paths supplied to the sendmail proxy command. This allows local users to read and write arbitrary files outside the CageFS environment in a limited way.

CloudLinux CageFS 7.0.8-2 or below insufficiently restricts file paths supplied to the sendmail proxy command. This allows local users to read and write arbitrary files outside the CageFS environment in a limited way.

EPSS

Процентиль: 6%
0.00024
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-610
CWE-73

Связанные уязвимости

CVSS3: 4.4
nvd
около 2 лет назад

CloudLinux CageFS 7.0.8-2 or below insufficiently restricts file paths supplied to the sendmail proxy command. This allows local users to read and write arbitrary files of certain file formats outside the CageFS environment.

EPSS

Процентиль: 6%
0.00024
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-610
CWE-73