Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-18348

Опубликовано: 19 окт. 2018
Источник: nvd
CVSS3: 7
CVSS2: 6.9
EPSS Низкий

Описание

Splunk Enterprise 6.6.x, when configured to run as root but drop privileges to a specific non-root account, allows local users to gain privileges by leveraging access to that non-root account to modify $SPLUNK_HOME/etc/splunk-launch.conf and insert Trojan horse programs into $SPLUNK_HOME/bin, because the non-root setup instructions state that chown should be run across all of $SPLUNK_HOME to give non-root access.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*
Версия от 6.6.0 (включая) до 6.6.11 (включая)

EPSS

Процентиль: 31%
0.00117
Низкий

7 High

CVSS3

6.9 Medium

CVSS2

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 7
github
больше 3 лет назад

Splunk Enterprise 6.6.x, when configured to run as root but drop privileges to a specific non-root account, allows local users to gain privileges by leveraging access to that non-root account to modify $SPLUNK_HOME/etc/splunk-launch.conf and insert Trojan horse programs into $SPLUNK_HOME/bin, because the non-root setup instructions state that chown should be run across all of $SPLUNK_HOME to give non-root access.

EPSS

Процентиль: 31%
0.00117
Низкий

7 High

CVSS3

6.9 Medium

CVSS2

Дефекты

CWE-732