Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-3416

Опубликовано: 14 авг. 2012
Источник: redhat
CVSS2: 7.5
EPSS Низкий

Описание

Condor before 7.8.2 allows remote attackers to bypass host-based authentication and execute actions such as ALLOW_ADMINISTRATOR or ALLOW_WRITE by connecting from a system with a spoofed reverse DNS hostname.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise MRG 1condorWill not fix
MRG for RHEL-5 v. 2condorFixedRHSA-2012:116814.08.2012
Red Hat Enterprise MRG 2condorFixedRHSA-2012:116914.08.2012

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-284
https://bugzilla.redhat.com/show_bug.cgi?id=841175condor: host based authentication does not implement forward-confirmed reverse dns

EPSS

Процентиль: 83%
0.01876
Низкий

7.5 High

CVSS2

Связанные уязвимости

ubuntu
больше 13 лет назад

Condor before 7.8.2 allows remote attackers to bypass host-based authentication and execute actions such as ALLOW_ADMINISTRATOR or ALLOW_WRITE by connecting from a system with a spoofed reverse DNS hostname.

nvd
больше 13 лет назад

Condor before 7.8.2 allows remote attackers to bypass host-based authentication and execute actions such as ALLOW_ADMINISTRATOR or ALLOW_WRITE by connecting from a system with a spoofed reverse DNS hostname.

debian
больше 13 лет назад

Condor before 7.8.2 allows remote attackers to bypass host-based authe ...

github
больше 3 лет назад

Condor before 7.8.2 allows remote attackers to bypass host-based authentication and execute actions such as ALLOW_ADMINISTRATOR or ALLOW_WRITE by connecting from a system with a spoofed reverse DNS hostname.

EPSS

Процентиль: 83%
0.01876
Низкий

7.5 High

CVSS2