Описание
Multiple stack-based buffer overflows in Symark PowerBroker 2.8 through 5.0.1 allow local users to gain privileges via a long argv[0] string when executing (1) pbrun, (2) pbsh, or (3) pbksh. NOTE: the product is often installed in environments with trust relationships that facilitate subsequent remote compromises.
Ссылки
- Vendor Advisory
- Exploit
- Patch
- Patch
- Vendor Advisory
- Exploit
- Patch
- Patch
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:symark:powerbroker:2.8:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:3.0:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:3.2:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:3.5:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:4.0:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:5.0:*:*:*:*:*:*:*
cpe:2.3:a:symark:powerbroker:5.01:*:*:*:*:*:*:*
EPSS
Процентиль: 15%
0.00048
Низкий
6.9 Medium
CVSS2
Дефекты
CWE-119
Связанные уязвимости
github
почти 4 года назад
Multiple stack-based buffer overflows in Symark PowerBroker 2.8 through 5.0.1 allow local users to gain privileges via a long argv[0] string when executing (1) pbrun, (2) pbsh, or (3) pbksh. NOTE: the product is often installed in environments with trust relationships that facilitate subsequent remote compromises.
EPSS
Процентиль: 15%
0.00048
Низкий
6.9 Medium
CVSS2
Дефекты
CWE-119