Описание
An issue was discovered in EyesOfNetwork 5.3. The sudoers configuration is prone to a privilege escalation vulnerability, allowing the apache user to run arbitrary commands as root via a crafted NSE script for nmap 7.
Ссылки
- ExploitThird Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
- ExploitThird Party Advisory
- ExploitThird Party AdvisoryVDB Entry
- ExploitThird Party AdvisoryVDB Entry
- ExploitThird Party Advisory
- US Government Resource
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:eyesofnetwork:eyesofnetwork:5.3-0:*:*:*:*:*:*:*
EPSS
Процентиль: 99%
0.81622
Высокий
7.8 High
CVSS3
9.3 Critical
CVSS2
Дефекты
CWE-269
CWE-269
Связанные уязвимости
CVSS3: 7.8
github
больше 3 лет назад
An issue was discovered in EyesOfNetwork 5.3. The sudoers configuration is prone to a privilege escalation vulnerability, allowing the apache user to run arbitrary commands as root via a crafted NSE script for nmap 7.
EPSS
Процентиль: 99%
0.81622
Высокий
7.8 High
CVSS3
9.3 Critical
CVSS2
Дефекты
CWE-269
CWE-269