5

CVE-2012-3419

Performance Co-Pilot (PCP) before 3.6.5 exports some of the /proc file system, which allows attackers to obtain sensitive information such as proc/pid/maps and command line arguments.

Data is provided by the National Vulnerability Database (NVD)
SgiPerformance Co-pilot Version <= 3.6.4
SgiPerformance Co-pilot Version2.1.1
SgiPerformance Co-pilot Version2.1.2
SgiPerformance Co-pilot Version2.1.3
SgiPerformance Co-pilot Version2.1.4
SgiPerformance Co-pilot Version2.1.5
SgiPerformance Co-pilot Version2.1.6
SgiPerformance Co-pilot Version2.1.7
SgiPerformance Co-pilot Version2.1.8
SgiPerformance Co-pilot Version2.1.9
SgiPerformance Co-pilot Version2.1.10
SgiPerformance Co-pilot Version2.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.4% 0.786
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.