Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-3424

Опубликовано: 31 июл. 2008
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

Condor before 7.0.4 does not properly handle wildcards in the ALLOW_WRITE, DENY_WRITE, HOSTALLOW_WRITE, or HOSTDENY_WRITE configuration variables in authorization policy lists, which might allow remote attackers to bypass intended access restrictions.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:condor_project:condor:*:*:*:*:*:*:*:*
Версия до 7.0.4 (исключая)
Конфигурация 2
cpe:2.3:o:fedoraproject:fedora:9:*:*:*:*:*:*:*

EPSS

Процентиль: 70%
0.00646
Низкий

7.5 High

CVSS2

Дефекты

CWE-863

Связанные уязвимости

redhat
около 17 лет назад

Condor before 7.0.4 does not properly handle wildcards in the ALLOW_WRITE, DENY_WRITE, HOSTALLOW_WRITE, or HOSTDENY_WRITE configuration variables in authorization policy lists, which might allow remote attackers to bypass intended access restrictions.

debian
около 17 лет назад

Condor before 7.0.4 does not properly handle wildcards in the ALLOW_WR ...

github
больше 3 лет назад

Condor before 7.0.4 does not properly handle wildcards in the ALLOW_WRITE, DENY_WRITE, HOSTALLOW_WRITE, or HOSTDENY_WRITE configuration variables in authorization policy lists, which might allow remote attackers to bypass intended access restrictions.

EPSS

Процентиль: 70%
0.00646
Низкий

7.5 High

CVSS2

Дефекты

CWE-863