Lucene search

K
ubuntucveUbuntu.comUB:CVE-2012-4443
HistoryOct 05, 2012 - 12:00 a.m.

CVE-2012-4443

2012-10-0500:00:00
ubuntu.com
ubuntu.com
17

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

EPSS

0

Percentile

5.1%

Monkey HTTP Daemon 0.9.3 uses a real UID of root and a real GID of root
during execution of CGI scripts, which might allow local users to gain
privileges by leveraging cgi-bin write access.

Bugs

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

EPSS

0

Percentile

5.1%

Related for UB:CVE-2012-4443