Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-67603

Опубликовано: 08 янв. 2026
Источник: redhat
CVSS3: 7.3

Описание

A Improper Authorization vulnerability in Foomuuri llows arbitrary users to influence the firewall configuration.This issue affects Foomuuri: from ? before 0.31.

A flaw was found in Foomuuri, an application that manages firewall configurations. This Improper Authorization vulnerability allows any user to make unauthorized changes to the system's firewall settings. This could lead to a compromise of network security by allowing or blocking unintended network traffic.

Отчет

This vulnerability is rated Important for Red Hat because Foomuuri, an application managing firewall configurations, contains an improper authorization flaw. This allows any local user to make unauthorized changes to the system's firewall settings, potentially compromising network security. This affects Red Hat Community Projects including EPEL and Fedora.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-285
https://bugzilla.redhat.com/show_bug.cgi?id=2428017Foomuuri: Foomuuri: Unauthorized firewall configuration changes due to improper authorization

7.3 High

CVSS3

Связанные уязвимости

ubuntu
3 месяца назад

A Improper Authorization vulnerability in Foomuuri llows arbitrary users to influence the firewall configuration.This issue affects Foomuuri: from ? before 0.31.

nvd
3 месяца назад

A Improper Authorization vulnerability in Foomuuri llows arbitrary users to influence the firewall configuration.This issue affects Foomuuri: from ? before 0.31.

debian
3 месяца назад

A Improper Authorization vulnerability in Foomuurillows arbitrary user ...

github
3 месяца назад

A Improper Authorization vulnerability in Foomuuri llows arbitrary users to influence the firewall configuration.This issue affects Foomuuri: from ? before 0.31.

7.3 High

CVSS3