Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2011-0988

Опубликовано: 18 апр. 2011
Источник: nvd
CVSS2: 4.4
EPSS Низкий

Описание

pure-ftpd 1.0.22, as used in SUSE Linux Enterprise Server 10 SP3 and SP4, and Enterprise Desktop 10 SP3 and SP4, when running OES Netware extensions, creates a world-writeable directory, which allows local users to overwrite arbitrary files and gain privileges via unspecified vectors.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:pureftpd:pure-ftpd:1.0.22:*:*:*:*:*:*:*
cpe:2.3:o:novell:suse_linux:10:sp3:*:*:*:*:*:*
cpe:2.3:o:novell:suse_linux:10:sp4:*:*:*:*:*:*
cpe:2.3:o:novell:suse_linux:11:sp3:desktop:*:*:*:*:*
cpe:2.3:o:novell:suse_linux:11:sp4:desktop:*:*:*:*:*

EPSS

Процентиль: 8%
0.00029
Низкий

4.4 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
больше 14 лет назад

pure-ftpd 1.0.22, as used in SUSE Linux Enterprise Server 10 SP3 and SP4, and Enterprise Desktop 10 SP3 and SP4, when running OES Netware extensions, creates a world-writeable directory, which allows local users to overwrite arbitrary files and gain privileges via unspecified vectors.

debian
больше 14 лет назад

pure-ftpd 1.0.22, as used in SUSE Linux Enterprise Server 10 SP3 and S ...

github
больше 3 лет назад

pure-ftpd 1.0.22, as used in SUSE Linux Enterprise Server 10 SP3 and SP4, and Enterprise Desktop 10 SP3 and SP4, when running OES Netware extensions, creates a world-writeable directory, which allows local users to overwrite arbitrary files and gain privileges via unspecified vectors.

EPSS

Процентиль: 8%
0.00029
Низкий

4.4 Medium

CVSS2

Дефекты

CWE-264