Логотип exploitDog
bind:CVE-2025-32802
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-32802

Количество 11

Количество 11

ubuntu логотип

CVE-2025-32802

10 месяцев назад

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2025-32802

10 месяцев назад

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2025-32802

10 месяцев назад

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2025-32802

10 месяцев назад

Kea configuration and API directives can be used to overwrite arbitrar ...

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-vwc9-wh34-hrfm

10 месяцев назад

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
EPSS: Низкий
fstec логотип

BDU:2025-11746

10 месяцев назад

Уязвимость DHCP-сервера с открытым исходным кодом Kea, связанная с некорректным внешним управлением именем или путем файла, позволяющая нарушителю получить доступ на запись произвольных файлов

CVSS3: 6.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1091-1

7 дней назад

Security update for kea

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0907-1

16 дней назад

Security update for kea

EPSS: Низкий
rocky логотип

RLSA-2025:9178

6 месяцев назад

Important: kea security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-9178

9 месяцев назад

ELSA-2025-9178: kea security update (IMPORTANT)

EPSS: Низкий
redos логотип

ROS-20250924-05

6 месяцев назад

Множественные уязвимости kea

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-32802

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
0%
Низкий
10 месяцев назад
redhat логотип
CVE-2025-32802

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
0%
Низкий
10 месяцев назад
nvd логотип
CVE-2025-32802

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
0%
Низкий
10 месяцев назад
debian логотип
CVE-2025-32802

Kea configuration and API directives can be used to overwrite arbitrar ...

CVSS3: 6.1
0%
Низкий
10 месяцев назад
github логотип
GHSA-vwc9-wh34-hrfm

Kea configuration and API directives can be used to overwrite arbitrary files, subject to permissions granted to Kea. Many common configurations run Kea as root, leave the API entry points unsecured by default, and/or place the control sockets in insecure paths. This issue affects Kea versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8.

CVSS3: 6.1
0%
Низкий
10 месяцев назад
fstec логотип
BDU:2025-11746

Уязвимость DHCP-сервера с открытым исходным кодом Kea, связанная с некорректным внешним управлением именем или путем файла, позволяющая нарушителю получить доступ на запись произвольных файлов

CVSS3: 6.1
0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:1091-1

Security update for kea

7 дней назад
suse-cvrf логотип
SUSE-SU-2026:0907-1

Security update for kea

16 дней назад
rocky логотип
RLSA-2025:9178

Important: kea security update

6 месяцев назад
oracle-oval логотип
ELSA-2025-9178

ELSA-2025-9178: kea security update (IMPORTANT)

9 месяцев назад
redos логотип
ROS-20250924-05

Множественные уязвимости kea

CVSS3: 6.1
6 месяцев назад

Уязвимостей на страницу