Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-4664

Опубликовано: 13 нояб. 2019
Источник: nvd
CVSS3: 8.8
CVSS2: 6.5
EPSS Низкий

Описание

In ConsoleKit before 0.4.2, an intended security policy restriction bypass was found. This flaw allows an authenticated system user to escalate their privileges by initiating a remote VNC session.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:consolekit_project:consolekit:*:*:*:*:*:*:*:*
Версия до 0.4.2 (исключая)
Конфигурация 2

Одно из

cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
Конфигурация 3
cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*

EPSS

Процентиль: 42%
0.00197
Низкий

8.8 High

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 6 лет назад

In ConsoleKit before 0.4.2, an intended security policy restriction bypass was found. This flaw allows an authenticated system user to escalate their privileges by initiating a remote VNC session.

redhat
больше 15 лет назад

In ConsoleKit before 0.4.2, an intended security policy restriction bypass was found. This flaw allows an authenticated system user to escalate their privileges by initiating a remote VNC session.

CVSS3: 8.8
debian
около 6 лет назад

In ConsoleKit before 0.4.2, an intended security policy restriction by ...

github
больше 3 лет назад

In ConsoleKit before 0.4.2, an intended security policy restriction bypass was found. This flaw allows an authenticated system user to escalate their privileges by initiating a remote VNC session.

EPSS

Процентиль: 42%
0.00197
Низкий

8.8 High

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-269