Количество 3
Количество 3
CVE-2023-50236
A vulnerability has been identified in Polarion ALM (All versions < V2404.0). The affected product is vulnerable due to weak file and folder permissions in the installation path. An attacker with local access could exploit this vulnerability to escalate privileges to NT AUTHORITY\SYSTEM.
GHSA-8hrh-hhv8-xf2w
A vulnerability has been identified in Polarion ALM (All versions). The affected product is vulnerable due to weak file and folder permissions in the installation path. An attacker with local access could exploit this vulnerability to escalate privileges to NT AUTHORITY\SYSTEM.
BDU:2024-02869
Уязвимость программного средства управления жизненным циклом разработки Polarion ALM (Application Lifecycle Management), связанная с настройками прав доступа по умолчанию, позволяющая нарушителю повысить свои привилегии до уровня NT AUTHORITY\SYSTEM
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-50236 A vulnerability has been identified in Polarion ALM (All versions < V2404.0). The affected product is vulnerable due to weak file and folder permissions in the installation path. An attacker with local access could exploit this vulnerability to escalate privileges to NT AUTHORITY\SYSTEM. | CVSS3: 7.8 | 0% Низкий | почти 2 года назад | |
GHSA-8hrh-hhv8-xf2w A vulnerability has been identified in Polarion ALM (All versions). The affected product is vulnerable due to weak file and folder permissions in the installation path. An attacker with local access could exploit this vulnerability to escalate privileges to NT AUTHORITY\SYSTEM. | CVSS3: 7.8 | 0% Низкий | почти 2 года назад | |
BDU:2024-02869 Уязвимость программного средства управления жизненным циклом разработки Polarion ALM (Application Lifecycle Management), связанная с настройками прав доступа по умолчанию, позволяющая нарушителю повысить свои привилегии до уровня NT AUTHORITY\SYSTEM | CVSS3: 7.8 | 0% Низкий | почти 2 года назад |
Уязвимостей на страницу