Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-2793

Опубликовано: 06 дек. 2010
Источник: redhat
CVSS2: 4.4
EPSS Низкий

Описание

Race condition in the SPICE (aka spice-activex) plug-in for Internet Explorer in Red Hat Enterprise Virtualization (RHEV) Manager before 2.2.4 allows local users to create a certain named pipe, and consequently gain privileges, via vectors involving knowledge of the name of this named pipe, in conjunction with use of the ImpersonateNamedPipeClient function.

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=620355spice activex/spicec named pipe races

EPSS

Процентиль: 45%
0.00229
Низкий

4.4 Medium

CVSS2

Связанные уязвимости

nvd
около 15 лет назад

Race condition in the SPICE (aka spice-activex) plug-in for Internet Explorer in Red Hat Enterprise Virtualization (RHEV) Manager before 2.2.4 allows local users to create a certain named pipe, and consequently gain privileges, via vectors involving knowledge of the name of this named pipe, in conjunction with use of the ImpersonateNamedPipeClient function.

github
больше 3 лет назад

Race condition in the SPICE (aka spice-activex) plug-in for Internet Explorer in Red Hat Enterprise Virtualization (RHEV) Manager before 2.2.4 allows local users to create a certain named pipe, and consequently gain privileges, via vectors involving knowledge of the name of this named pipe, in conjunction with use of the ImpersonateNamedPipeClient function.

EPSS

Процентиль: 45%
0.00229
Низкий

4.4 Medium

CVSS2