Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2013-7172

Опубликовано: 21 нояб. 2019
Источник: nvd
CVSS3: 7.8
CVSS2: 7.2
EPSS Низкий

Описание

Slackware 13.1, 13.37, 14.0 and 14.1 contain world-writable permissions on the iodbctest and iodbctestw programs within the libiodbc package, which could allow local users to use RPATH information to execute arbitrary code with root privileges.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:slackware:slackware_linux:13.1:*:*:*:*:*:*:*
cpe:2.3:o:slackware:slackware_linux:13.37:*:*:*:*:*:*:*
cpe:2.3:o:slackware:slackware_linux:14.0:*:*:*:*:*:*:*
cpe:2.3:o:slackware:slackware_linux:14.1:*:*:*:*:*:*:*

EPSS

Процентиль: 32%
0.00126
Низкий

7.8 High

CVSS3

7.2 High

CVSS2

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 6 лет назад

Slackware 13.1, 13.37, 14.0 and 14.1 contain world-writable permissions on the iodbctest and iodbctestw programs within the libiodbc package, which could allow local users to use RPATH information to execute arbitrary code with root privileges.

redhat
около 12 лет назад

Slackware 13.1, 13.37, 14.0 and 14.1 contain world-writable permissions on the iodbctest and iodbctestw programs within the libiodbc package, which could allow local users to use RPATH information to execute arbitrary code with root privileges.

CVSS3: 7.8
debian
около 6 лет назад

Slackware 13.1, 13.37, 14.0 and 14.1 contain world-writable permission ...

CVSS3: 7.8
github
почти 4 года назад

Slackware 13.1, 13.37, 14.0 and 14.1 contain world-writable permissions on the iodbctest and iodbctestw programs within the libiodbc package, which could allow local users to use RPATH information to execute arbitrary code with root privileges.

EPSS

Процентиль: 32%
0.00126
Низкий

7.8 High

CVSS3

7.2 High

CVSS2

Дефекты

CWE-20