6.8
CVE-2014-4867
- EPSS 0.07%
- Veröffentlicht 10.10.2014 10:55:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle cret@cert.org
- CVE-Watchlists
- Unerledigt
Cryoserver Security Appliance 7.3.x uses weak permissions for /etc/init.d/cryoserver, which allows local users to gain privileges by leveraging access to the support account and running the /bin/cryo-mgmt program.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cryoserver ≫ Cryoserver Security Appliance Version7.3.0
Cryoserver ≫ Cryoserver Security Appliance Version7.3.0 Updatea
Cryoserver ≫ Cryoserver Security Appliance Version7.3.1
Cryoserver ≫ Cryoserver Security Appliance Version7.3.1 Updatea
Cryoserver ≫ Cryoserver Security Appliance Version7.3.2
Cryoserver ≫ Cryoserver Security Appliance Version7.3.3
Cryoserver ≫ Cryoserver Security Appliance Version7.3.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.07% | 0.219 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.8 | 3.1 | 10 |
AV:L/AC:L/Au:S/C:C/I:C/A:C
|