Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-15912

Опубликовано: 29 авг. 2018
Источник: nvd
CVSS3: 7.8
CVSS2: 7.2
EPSS Низкий

Описание

An issue was discovered in manjaro-update-system.sh in manjaro-system 20180716-1 on Manjaro Linux. A local attacker can install or remove arbitrary packages and package repositories potentially containing hooks with arbitrary code, which will automatically be run as root, or remove packages vital to the system.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:manjaro:manjaro_linux:*:*:*:*:*:*:*:*
Версия до 20180716-1 (включая)

EPSS

Процентиль: 76%
0.00973
Низкий

7.8 High

CVSS3

7.2 High

CVSS2

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 7.8
github
больше 3 лет назад

An issue was discovered in manjaro-update-system.sh in manjaro-system 20180716-1 on Manjaro Linux. A local attacker can install or remove arbitrary packages and package repositories potentially containing hooks with arbitrary code, which will automatically be run as root, or remove packages vital to the system.

EPSS

Процентиль: 76%
0.00973
Низкий

7.8 High

CVSS3

7.2 High

CVSS2

Дефекты

CWE-269