Логотип exploitDog
bind:CVE-2011-5097
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2011-5097

Количество 4

Количество 4

ubuntu логотип

CVE-2011-5097

больше 13 лет назад

chef-server-api/app/controllers/cookbooks.rb in Chef Server in Chef before 0.9.18, and 0.10.x before 0.10.2, does not require administrative privileges for the update and destroy methods, which allows remote authenticated users to (1) upload cookbooks via a knife cookbook upload command or (2) delete cookbooks via a knife cookbook delete command.

CVSS2: 5.5
EPSS: Низкий
nvd логотип

CVE-2011-5097

больше 13 лет назад

chef-server-api/app/controllers/cookbooks.rb in Chef Server in Chef before 0.9.18, and 0.10.x before 0.10.2, does not require administrative privileges for the update and destroy methods, which allows remote authenticated users to (1) upload cookbooks via a knife cookbook upload command or (2) delete cookbooks via a knife cookbook delete command.

CVSS2: 5.5
EPSS: Низкий
debian логотип

CVE-2011-5097

больше 13 лет назад

chef-server-api/app/controllers/cookbooks.rb in Chef Server in Chef be ...

CVSS2: 5.5
EPSS: Низкий
github логотип

GHSA-67p8-9f9j-9rxq

больше 3 лет назад

chef-server-api/app/controllers/cookbooks.rb in Chef Server in Chef before 0.9.18, and 0.10.x before 0.10.2, does not require administrative privileges for the update and destroy methods, which allows remote authenticated users to (1) upload cookbooks via a knife cookbook upload command or (2) delete cookbooks via a knife cookbook delete command.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2011-5097

chef-server-api/app/controllers/cookbooks.rb in Chef Server in Chef before 0.9.18, and 0.10.x before 0.10.2, does not require administrative privileges for the update and destroy methods, which allows remote authenticated users to (1) upload cookbooks via a knife cookbook upload command or (2) delete cookbooks via a knife cookbook delete command.

CVSS2: 5.5
0%
Низкий
больше 13 лет назад
nvd логотип
CVE-2011-5097

chef-server-api/app/controllers/cookbooks.rb in Chef Server in Chef before 0.9.18, and 0.10.x before 0.10.2, does not require administrative privileges for the update and destroy methods, which allows remote authenticated users to (1) upload cookbooks via a knife cookbook upload command or (2) delete cookbooks via a knife cookbook delete command.

CVSS2: 5.5
0%
Низкий
больше 13 лет назад
debian логотип
CVE-2011-5097

chef-server-api/app/controllers/cookbooks.rb in Chef Server in Chef be ...

CVSS2: 5.5
0%
Низкий
больше 13 лет назад
github логотип
GHSA-67p8-9f9j-9rxq

chef-server-api/app/controllers/cookbooks.rb in Chef Server in Chef before 0.9.18, and 0.10.x before 0.10.2, does not require administrative privileges for the update and destroy methods, which allows remote authenticated users to (1) upload cookbooks via a knife cookbook upload command or (2) delete cookbooks via a knife cookbook delete command.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу