Lucene search

K
githubGitHub Advisory DatabaseGHSA-PW5C-XQF2-6XC2
HistoryMay 17, 2022 - 3:44 a.m.

Doctrine Security Misconfiguration Vulnerability

2022-05-1703:44:28
GitHub Advisory Database
github.com
11
doctrine
security misconfiguration
vulnerability
php code
cache
world-writable permissions
local users
additional privileges

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0

Percentile

5.1%

Doctrine Annotations before 1.2.7, Cache before 1.3.2 and 1.4.x before 1.4.2, Common before 2.4.3 and 2.5.x before 2.5.1, ORM before 2.4.8 or 2.5.x before 2.5.1, MongoDB ODM before 1.0.2, and MongoDB ODM Bundle before 3.0.1 use world-writable permissions for cache directories, which allows local users to execute arbitrary PHP code with additional privileges by leveraging an application with the umask set to 0 and that executes cache entries as code.

Affected configurations

Vulners
Node
zfcampuszf-apigility-doctrineRange1.0.01.0.3
OR
zendframeworkzendframeworkRange2.4.02.4.8
OR
zendframeworkzend-cacheRange2.4.02.4.8
OR
doctrinecacheRange1.0.01.3.2
OR
awsaws-sdk-phpRange3.0.03.2.1
OR
zendframeworkzend-cacheRange2.5.02.5.3
OR
zendframeworkzendframework1Range1.12.01.12.16
OR
doctrinemongodb-odm-bundleRange<3.0.1
OR
doctrinemongodb-odmRange<1.0.2
OR
doctrineormRange2.5.02.5.1
OR
doctrinecommonRange2.5.0-stable2.5.1
OR
doctrinecommonRange<2.4.3
OR
doctrinecacheRange1.4.01.4.2
OR
doctrineannotationsRange<1.2.7
VendorProductVersionCPE
zfcampuszf-apigility-doctrine*cpe:2.3:a:zfcampus:zf-apigility-doctrine:*:*:*:*:*:*:*:*
zendframeworkzendframework*cpe:2.3:a:zendframework:zendframework:*:*:*:*:*:*:*:*
zendframeworkzend-cache*cpe:2.3:a:zendframework:zend-cache:*:*:*:*:*:*:*:*
doctrinecache*cpe:2.3:a:doctrine:cache:*:*:*:*:*:*:*:*
awsaws-sdk-php*cpe:2.3:a:aws:aws-sdk-php:*:*:*:*:*:*:*:*
zendframeworkzendframework1*cpe:2.3:a:zendframework:zendframework1:*:*:*:*:*:*:*:*
doctrinemongodb-odm-bundle*cpe:2.3:a:doctrine:mongodb-odm-bundle:*:*:*:*:*:*:*:*
doctrinemongodb-odm*cpe:2.3:a:doctrine:mongodb-odm:*:*:*:*:*:*:*:*
doctrineorm*cpe:2.3:a:doctrine:orm:*:*:*:*:*:*:*:*
doctrinecommon*cpe:2.3:a:doctrine:common:*:*:*:*:*:*:*:*
Rows per page:
1-10 of 111

References

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0

Percentile

5.1%