Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2006-1280

Опубликовано: 19 мар. 2006
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5

Описание

CGI::Session 4.03-1 does not set proper permissions on temporary files created in (1) Driver::File and (2) Driver::db_file, which allows local users to obtain privileged information, such as session keys, by viewing the files.

РелизСтатусПримечание
dapper

released

4.13-1
devel

released

4.13-1
edgy

released

4.13-1
feisty

released

4.13-1
upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 66%
0.00518
Низкий

7.5 High

CVSS2

Связанные уязвимости

nvd
больше 19 лет назад

CGI::Session 4.03-1 does not set proper permissions on temporary files created in (1) Driver::File and (2) Driver::db_file, which allows local users to obtain privileged information, such as session keys, by viewing the files.

debian
больше 19 лет назад

CGI::Session 4.03-1 does not set proper permissions on temporary files ...

github
больше 3 лет назад

CGI::Session 4.03-1 does not set proper permissions on temporary files created in (1) Driver::File and (2) Driver::db_file, which allows local users to obtain privileged information, such as session keys, by viewing the files.

EPSS

Процентиль: 66%
0.00518
Низкий

7.5 High

CVSS2