Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-9091

Опубликовано: 10 дек. 2014
Источник: nvd
CVSS2: 4.6
EPSS Низкий

Описание

Icecast before 2.4.0 does not change the supplementary group privileges when is configured, which allows local users to gain privileges via unspecified vectors.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:icecast:icecast:*:*:*:*:*:*:*:*
Версия до 2.3.3 (включая)

EPSS

Процентиль: 40%
0.00488
Низкий

4.6 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
больше 11 лет назад

Icecast before 2.4.0 does not change the supplementary group privileges when <changeowner> is configured, which allows local users to gain privileges via unspecified vectors.

debian
больше 11 лет назад

Icecast before 2.4.0 does not change the supplementary group privilege ...

github
больше 4 лет назад

Icecast before 2.4.0 does not change the supplementary group privileges when <changeowner> is configured, which allows local users to gain privileges via unspecified vectors.

EPSS

Процентиль: 40%
0.00488
Низкий

4.6 Medium

CVSS2

Дефекты

CWE-264