Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-8583

Опубликовано: 16 дек. 2014
Источник: nvd
CVSS2: 6.9
EPSS Низкий

Описание

mod_wsgi before 4.2.4 for Apache, when creating a daemon process group, does not properly handle when group privileges cannot be dropped, which might allow attackers to gain privileges via unspecified vectors.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:modwsgi:mod_wsgi:*:*:*:*:*:*:*:*
Версия до 4.2.4 (включая)

EPSS

Процентиль: 33%
0.00403
Низкий

6.9 Medium

CVSS2

Дефекты

CWE-254

Связанные уязвимости

ubuntu
больше 11 лет назад

mod_wsgi before 4.2.4 for Apache, when creating a daemon process group, does not properly handle when group privileges cannot be dropped, which might allow attackers to gain privileges via unspecified vectors.

redhat
около 12 лет назад

mod_wsgi before 4.2.4 for Apache, when creating a daemon process group, does not properly handle when group privileges cannot be dropped, which might allow attackers to gain privileges via unspecified vectors.

debian
больше 11 лет назад

mod_wsgi before 4.2.4 for Apache, when creating a daemon process group ...

github
около 4 лет назад

mod_wsgi before 4.2.4 for Apache, when creating a daemon process group, does not properly handle when group privileges cannot be dropped, which might allow attackers to gain privileges via unspecified vectors.

EPSS

Процентиль: 33%
0.00403
Низкий

6.9 Medium

CVSS2

Дефекты

CWE-254