Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-5449

Опубликовано: 20 окт. 2014
Источник: nvd
CVSS2: 2.1
EPSS Низкий

Описание

Zarafa WebAccess 4.1 and WebApp uses world-readable permissions for the files in their tmp directory, which allows local users to obtain sensitive information by reading temporary session data.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:zarafa:webaccess:4.1:*:*:*:*:*:*:*
cpe:2.3:a:zarafa:webapp:-:*:*:*:*:*:*:*

EPSS

Процентиль: 30%
0.00371
Низкий

2.1 Low

CVSS2

Дефекты

CWE-200

Связанные уязвимости

ubuntu
почти 12 лет назад

Zarafa WebAccess 4.1 and WebApp uses world-readable permissions for the files in their tmp directory, which allows local users to obtain sensitive information by reading temporary session data.

debian
почти 12 лет назад

Zarafa WebAccess 4.1 and WebApp uses world-readable permissions for th ...

github
больше 4 лет назад

Zarafa WebAccess 4.1 and WebApp uses world-readable permissions for the files in their tmp directory, which allows local users to obtain sensitive information by reading temporary session data.

EPSS

Процентиль: 30%
0.00371
Низкий

2.1 Low

CVSS2

Дефекты

CWE-200