Lucene search

K
prionPRIOn knowledge basePRION:CVE-2014-0185
HistoryMay 06, 2014 - 10:44 a.m.

Code injection

2014-05-0610:44:00
PRIOn knowledge base
www.prio-n.com
7

6.8 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

15.7%

sapi/fpm/fpm/fpm_unix.c in the FastCGI Process Manager (FPM) in PHP before 5.4.28 and 5.5.x before 5.5.12 uses 0666 permissions for the UNIX socket, which allows local users to gain privileges via a crafted FastCGI client.

CPENameOperatorVersion
phpge5.5.0
phplt5.5.12
phpge5.4.0
phplt5.4.28
phpge5.3.0
phplt5.3.28

6.8 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

15.7%