Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-8583

Опубликовано: 16 дек. 2014
Источник: nvd
CVSS2: 6.9
EPSS Низкий

Описание

mod_wsgi before 4.2.4 for Apache, when creating a daemon process group, does not properly handle when group privileges cannot be dropped, which might allow attackers to gain privileges via unspecified vectors.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:modwsgi:mod_wsgi:*:*:*:*:*:*:*:*
Версия до 4.2.4 (включая)

EPSS

Процентиль: 29%
0.00107
Низкий

6.9 Medium

CVSS2

Дефекты

CWE-254

Связанные уязвимости

ubuntu
около 11 лет назад

mod_wsgi before 4.2.4 for Apache, when creating a daemon process group, does not properly handle when group privileges cannot be dropped, which might allow attackers to gain privileges via unspecified vectors.

redhat
больше 11 лет назад

mod_wsgi before 4.2.4 for Apache, when creating a daemon process group, does not properly handle when group privileges cannot be dropped, which might allow attackers to gain privileges via unspecified vectors.

debian
около 11 лет назад

mod_wsgi before 4.2.4 for Apache, when creating a daemon process group ...

github
больше 3 лет назад

mod_wsgi before 4.2.4 for Apache, when creating a daemon process group, does not properly handle when group privileges cannot be dropped, which might allow attackers to gain privileges via unspecified vectors.

EPSS

Процентиль: 29%
0.00107
Низкий

6.9 Medium

CVSS2

Дефекты

CWE-254