Описание
Cobbler before 2.0.4 uses an incorrect umask value, which allows local users to have an unspecified impact by leveraging world writable permissions for files and directories.
Отчет
This issue did not affect the versions of cobbler as shipped with Red Hat Satellite version 5.
Дополнительная информация
Статус:
Low
Дефект:
CWE-732
https://bugzilla.redhat.com/show_bug.cgi?id=693647cobbler: Insecure umask by creating /tftpboot/pxelinux.cfg/* files after cobbler sync
EPSS
Процентиль: 24%
0.00317
Низкий
4.6 Medium
CVSS2
Связанные уязвимости
nvd
больше 15 лет назад
Cobbler before 2.0.4 uses an incorrect umask value, which allows local users to have an unspecified impact by leveraging world writable permissions for files and directories.
debian
больше 15 лет назад
Cobbler before 2.0.4 uses an incorrect umask value, which allows local ...
github
около 4 лет назад
Cobbler before 2.0.4 uses an incorrect umask value, which allows local users to have an unspecified impact by leveraging world writable permissions for files and directories.
EPSS
Процентиль: 24%
0.00317
Низкий
4.6 Medium
CVSS2