Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-3493

Опубликовано: 19 сент. 2012
Источник: redhat
CVSS2: 5.8
EPSS Низкий

Описание

The command_give_request_ad function in condor_startd.V6/command.cpp Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 allows remote attackers to obtain sensitive information, and possibly control or start arbitrary jobs, via a ClassAd request to the condor_startd port, which leaks the ClaimId.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=848222condor: GIVE_REQUEST_AD leaks privileged ClaimId information

EPSS

Процентиль: 73%
0.00765
Низкий

5.8 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 13 лет назад

The command_give_request_ad function in condor_startd.V6/command.cpp Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 allows remote attackers to obtain sensitive information, and possibly control or start arbitrary jobs, via a ClassAd request to the condor_startd port, which leaks the ClaimId.

nvd
больше 13 лет назад

The command_give_request_ad function in condor_startd.V6/command.cpp Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 allows remote attackers to obtain sensitive information, and possibly control or start arbitrary jobs, via a ClassAd request to the condor_startd port, which leaks the ClaimId.

debian
больше 13 лет назад

The command_give_request_ad function in condor_startd.V6/command.cpp C ...

github
больше 3 лет назад

The command_give_request_ad function in condor_startd.V6/command.cpp Condor 7.6.x before 7.6.10 and 7.8.x before 7.8.4 allows remote attackers to obtain sensitive information, and possibly control or start arbitrary jobs, via a ClassAd request to the condor_startd port, which leaks the ClaimId.

EPSS

Процентиль: 73%
0.00765
Низкий

5.8 Medium

CVSS2