[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

251625

 
 

909

 
 

196370

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2009-3894Date: (C)2009-11-29   (M)2023-12-22


Multiple untrusted search path vulnerabilities in dstat before 0.7.0 allow local users to gain privileges via a Trojan horse Python module in (1) the current working directory or (2) a certain subdirectory of the current working directory.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 4.4
Exploit Score: 3.4
Impact Score: 6.4
 
CVSS V2 Metrics:
Access Vector: LOCAL
Access Complexity: MEDIUM
Authentication: NONE
Confidentiality: PARTIAL
Integrity: PARTIAL
Availability: PARTIAL
  
Reference:
BID-37131
SECUNIA-37445
SECUNIA-37457
OSVDB-60511
GLSA-200911-04
MDVSA-2009:341
RHSA-2009:1619
http://bugs.gentoo.org/show_bug.cgi?id=293497
http://svn.rpmforge.net/svn/trunk/tools/dstat/ChangeLog
https://bugzilla.redhat.com/show_bug.cgi?id=538459
oval:org.mitre.oval:def:8969

OVAL    5
oval:org.secpod.oval:def:101501
oval:org.secpod.oval:def:101404
oval:org.secpod.oval:def:500627
oval:org.secpod.oval:def:202136
...

© SecPod Technologies