Описание
mod_ruid2 before 0.9.8 improperly handles file descriptors which allows remote attackers to bypass security using a CGI script to break out of the chroot.
Ссылки
- Mailing ListThird Party Advisory
- Third Party AdvisoryVDB Entry
- Third Party Advisory
- Mailing ListThird Party Advisory
- Third Party AdvisoryVDB Entry
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.9.8 (исключая)
cpe:2.3:a:mod_ruid2_project:mod_ruid2:*:*:*:*:*:apache:*:*
EPSS
Процентиль: 69%
0.00591
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-20
Связанные уязвимости
CVSS3: 7.5
ubuntu
около 6 лет назад
mod_ruid2 before 0.9.8 improperly handles file descriptors which allows remote attackers to bypass security using a CGI script to break out of the chroot.
CVSS3: 7.5
debian
около 6 лет назад
mod_ruid2 before 0.9.8 improperly handles file descriptors which allow ...
github
почти 4 года назад
mod_ruid2 before 0.9.8 improperly handles file descriptors which allows remote attackers to bypass security using a CGI script to break out of the chroot.
EPSS
Процентиль: 69%
0.00591
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-20