2.1
CVE-2010-2241
- EPSS 0.35%
- Veröffentlicht 17.08.2010 20:00:03
- Zuletzt bearbeitet 16.06.2026 23:20:22
- Erkennungen
The (1) setup-ds.pl and (2) setup-ds-admin.pl setup scripts for Red Hat Directory Server 8 before 8.2 use world-readable permissions when creating cache files, which allows local users to obtain sensitive information including passwords for Directory and Administration Server administrative accounts.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Redhat ≫ Directory Server Version 8.0
Redhat ≫ Directory Server Version 8.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.35% | 0.265 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 2.1 | 3.9 | 2.9 |
AV:L/AC:L/Au:N/C:P/I:N/A:N
|
http://rhn.redhat.com/errata/RHSA-2010-0590.html
http://secunia.com/advisories/40811
http://www.osvdb.org/66962
http://www.securitytracker.com/id?1024281
https://bugzilla.redhat.com/show_bug.cgi?id=608032