6

CVE-2008-4313

A certain Red Hat patch for tog-pegasus in OpenGroup Pegasus 2.7.0 does not properly configure the PAM tty name, which allows remote authenticated users to bypass intended access restrictions and send requests to OpenPegasus WBEM services.

Data is provided by the National Vulnerability Database (NVD)
RedhatEnterprise Linux Version5.0 Editionserver
   OpenpegasusOpenpegasus Wbem Version2.7.0
RedhatEnterprise Linux Desktop Version5.0 Editionclient
   OpenpegasusOpenpegasus Wbem Version2.7.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.56% 0.654
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6 6.8 6.4
AV:N/AC:M/Au:S/C:P/I:P/A:P