Логотип exploitDog
bind:CVE-2025-25011
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-25011

Количество 3

Количество 3

nvd логотип

CVE-2025-25011

6 месяцев назад

An uncontrolled search path element vulnerability can lead to local privilege Escalation (LPE) via Insecure Directory Permissions. The vulnerability arises from improper handling of directory permissions. An attacker with local access may exploit this flaw to move and delete arbitrary files, potentially gaining SYSTEM privileges.

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-h425-rqxh-h66f

6 месяцев назад

An uncontrolled search path element vulnerability can lead to local privilege Escalation (LPE) via Insecure Directory Permissions. The vulnerability arises from improper handling of directory permissions. An attacker with local access may exploit this flaw to move and delete arbitrary files, potentially gaining SYSTEM privileges.

CVSS3: 7
EPSS: Низкий
fstec логотип

BDU:2025-09241

6 месяцев назад

Уязвимость установщика агента для сборки и доставки данных в Elasticsearch или Logstash Elastic Beats, позволяющая нарушителю повысить свои привилегии

CVSS3: 7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-25011

An uncontrolled search path element vulnerability can lead to local privilege Escalation (LPE) via Insecure Directory Permissions. The vulnerability arises from improper handling of directory permissions. An attacker with local access may exploit this flaw to move and delete arbitrary files, potentially gaining SYSTEM privileges.

CVSS3: 7
0%
Низкий
6 месяцев назад
github логотип
GHSA-h425-rqxh-h66f

An uncontrolled search path element vulnerability can lead to local privilege Escalation (LPE) via Insecure Directory Permissions. The vulnerability arises from improper handling of directory permissions. An attacker with local access may exploit this flaw to move and delete arbitrary files, potentially gaining SYSTEM privileges.

CVSS3: 7
0%
Низкий
6 месяцев назад
fstec логотип
BDU:2025-09241

Уязвимость установщика агента для сборки и доставки данных в Elasticsearch или Logstash Elastic Beats, позволяющая нарушителю повысить свои привилегии

CVSS3: 7
0%
Низкий
6 месяцев назад

Уязвимостей на страницу