Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xhh9-3g8r-qgcp

Опубликовано: 07 дек. 2021
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. The apache user could read arbitrary files such as /etc/shadow by abusing an insecure Sudo rule.

An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. The apache user could read arbitrary files such as /etc/shadow by abusing an insecure Sudo rule.

EPSS

Процентиль: 60%
0.00391
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-668

Связанные уязвимости

CVSS3: 6.5
nvd
около 4 лет назад

An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. The apache user could read arbitrary files such as /etc/shadow by abusing an insecure Sudo rule.

EPSS

Процентиль: 60%
0.00391
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-668