Описание
The scheduler in HTCondor before 8.2.6 allows remote authenticated users to execute arbitrary code.
The HTCondor scheduler can optionally notify a user of completed jobs by sending an email. Due to the way the daemon sent the email message, authenticated users able to submit jobs could execute arbitrary code with the privileges of the condor user.
Дополнительная информация
Статус:
EPSS
8.5 High
CVSS2
Связанные уязвимости
The scheduler in HTCondor before 8.2.6 allows remote authenticated users to execute arbitrary code.
The scheduler in HTCondor before 8.2.6 allows remote authenticated users to execute arbitrary code.
The scheduler in HTCondor before 8.2.6 allows remote authenticated use ...
The scheduler in HTCondor before 8.2.6 allows remote authenticated users to execute arbitrary code.
EPSS
8.5 High
CVSS2