Cobbler before 2.0.4 uses an incorrect umask value, which allows local users to have an unspecified impact by leveraging world writable permissions for files and directories.
No CVSS v3.1
No CVSS v3.0
Access Vector Local
Access Complexity Low
Authentication None
Confidentiality Impact Complete
Integrity Impact Complete
Availability Impact Complete
AV:L/AC:L/Au:N/C:C/I:C/A:C
Vendors | Products |
---|---|
Michael Dehaan |
|
Configuration 1 [-]
|
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2010-12-09T19:00:00
Updated: 2010-12-18T10:00:00
Reserved: 2010-12-09T00:00:00
Link: CVE-2010-4512
JSON object: View
NVD Information
Status : Modified
Published: 2010-12-09T20:00:18.023
Modified: 2010-12-18T07:07:03.863
Link: CVE-2010-4512
JSON object: View
Redhat Information
No data.
CWE