Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xh76-hgvx-8pp6

Опубликовано: 28 апр. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.7

Описание

An issue was discovered in Logpoint 7.1 before 7.1.2. The daily executed cron file clean_secbi_old_logs is writable by all users and is executed as root, leading to privilege escalation.

An issue was discovered in Logpoint 7.1 before 7.1.2. The daily executed cron file clean_secbi_old_logs is writable by all users and is executed as root, leading to privilege escalation.

EPSS

Процентиль: 12%
0.00041
Низкий

7.7 High

CVSS3

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 7.7
nvd
почти 2 года назад

An issue was discovered in Logpoint 7.1 before 7.1.2. The daily executed cron file clean_secbi_old_logs is writable by all users and is executed as root, leading to privilege escalation.

EPSS

Процентиль: 12%
0.00041
Низкий

7.7 High

CVSS3

Дефекты

CWE-276