Описание
An issue was discovered in EMC ScaleIO versions before 2.0.1.1. A low-privileged local attacker may be able to modify the kernel memory in the SCINI driver and may achieve code execution to escalate privileges to root on ScaleIO Data Client (SDC) servers.
Ссылки
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1Версия до 2.0.1.0 (включая)
cpe:2.3:a:emc:scaleio:*:*:*:*:*:*:*:*
EPSS
Процентиль: 24%
0.00083
Низкий
8.8 High
CVSS3
4.6 Medium
CVSS2
Дефекты
CWE-264
Связанные уязвимости
CVSS3: 8.8
github
больше 3 лет назад
An issue was discovered in EMC ScaleIO versions before 2.0.1.1. A low-privileged local attacker may be able to modify the kernel memory in the SCINI driver and may achieve code execution to escalate privileges to root on ScaleIO Data Client (SDC) servers.
EPSS
Процентиль: 24%
0.00083
Низкий
8.8 High
CVSS3
4.6 Medium
CVSS2
Дефекты
CWE-264