Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
6.5
CVE-2018-1079
- EPSS 0.41%
- Published 12.04.2018 17:29:00
- Last modified 21.11.2024 03:59:08
pcs before version 0.9.164 and 0.10 is vulnerable to a privilege escalation via authorized user malicious REST call. The REST interface of the pcsd service did not properly sanitize the file name from the /remote/put_file query. If the /etc/booth dir...
7.5
CVE-2018-1086
- EPSS 0.4%
- Published 12.04.2018 16:29:00
- Last modified 21.11.2024 03:59:09
pcs before versions 0.9.164 and 0.10 is vulnerable to a debug parameter removal bypass. REST interface of the pcsd service did not properly remove the pcs debug argument from the /run_pcs query, possibly disclosing sensitive information. A remote att...
1