Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 11

Количество 11

github логотип

GHSA-vwc9-wh34-hrfm

около 1 года назад

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2025-32802

около 1 года назад

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2025-32802

около 1 года назад

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2025-32802

около 1 года назад

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2025-32802

около 1 года назад

Kea configuration and API directives can be used to overwrite arbitrar ...

CVSS3: 6.1
EPSS: Низкий
fstec логотип

BDU:2025-11746

около 1 года назад

Уязвимость DHCP-сервера с открытым исходным кодом Kea, связанная с некорректным внешним управлением именем или путем файла, позволяющая нарушителю получить доступ на запись произвольных файлов

CVSS3: 6.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1091-1

4 месяца назад

Security update for kea

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0907-1

5 месяцев назад

Security update for kea

EPSS: Низкий
rocky логотип

RLSA-2025:9178

10 месяцев назад

Important: kea security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-9178

около 1 года назад

ELSA-2025-9178: kea security update (IMPORTANT)

EPSS: Низкий
redos логотип

ROS-20250924-05

10 месяцев назад

Множественные уязвимости kea

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-vwc9-wh34-hrfm

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
0%
Низкий
около 1 года назад
ubuntu логотип
CVE-2025-32802

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
0%
Низкий
около 1 года назад
redhat логотип
CVE-2025-32802

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
0%
Низкий
около 1 года назад
nvd логотип
CVE-2025-32802

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
0%
Низкий
около 1 года назад
debian логотип
CVE-2025-32802

Kea configuration and API directives can be used to overwrite arbitrar ...

CVSS3: 6.1
0%
Низкий
около 1 года назад
fstec логотип
BDU:2025-11746

Уязвимость DHCP-сервера с открытым исходным кодом Kea, связанная с некорректным внешним управлением именем или путем файла, позволяющая нарушителю получить доступ на запись произвольных файлов

CVSS3: 6.1
0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2026:1091-1

Security update for kea

4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0907-1

Security update for kea

5 месяцев назад
rocky логотип
RLSA-2025:9178

Important: kea security update

10 месяцев назад
oracle-oval логотип
ELSA-2025-9178

ELSA-2025-9178: kea security update (IMPORTANT)

около 1 года назад
redos логотип
ROS-20250924-05

Множественные уязвимости kea

CVSS3: 6.1
10 месяцев назад

Уязвимостей на страницу