Описание
Gnuboard 5.5.4 and 5.5.5 is vulnerable to Insecure Permissions. An attacker can change password of all users without knowing victim's original password.
Ссылки
- Patch
- PatchThird Party Advisory
- PatchVendor Advisory
- Patch
- PatchThird Party Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:sir:gnuboard:5.5.4:*:*:*:*:*:*:*
cpe:2.3:a:sir:gnuboard:5.5.5:*:*:*:*:*:*:*
EPSS
Процентиль: 37%
0.00158
Низкий
7.5 High
CVSS3
Дефекты
CWE-306
CWE-306
Связанные уязвимости
CVSS3: 7.5
github
почти 3 года назад
Gnuboard 5.5.4 and 5.5.5 is vulnerable to Insecure Permissions. An attacker can change password of all users without knowing victim's original password.
EPSS
Процентиль: 37%
0.00158
Низкий
7.5 High
CVSS3
Дефекты
CWE-306
CWE-306