Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-17956

Опубликовано: 15 мар. 2019
Источник: nvd
CVSS3: 3.3
CVSS3: 7.8
CVSS2: 2.1
EPSS Низкий

Описание

In yast2-samba-provision up to and including version 1.0.1 the password for samba shares was provided on the command line to tools used by yast2-samba-provision, allowing local attackers to read them in the process list

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:opensuse:yast2-samba-provision:*:*:*:*:*:*:*:*
Версия до 1.0.1 (включая)

EPSS

Процентиль: 14%
0.00045
Низкий

3.3 Low

CVSS3

7.8 High

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-200
CWE-200

Связанные уязвимости

suse-cvrf
больше 3 лет назад

Security update for yast2-samba-provision

CVSS3: 7.8
github
больше 3 лет назад

In yast2-samba-provision up to and including version 1.0.1 the password for samba shares was provided on the command line to tools used by yast2-samba-provision, allowing local attackers to read them in the process list

EPSS

Процентиль: 14%
0.00045
Низкий

3.3 Low

CVSS3

7.8 High

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-200
CWE-200