Security Advisory

CVE-2012-0878

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2012-05-01 19:00:00
Last updated 2024-08-06 18:38:15
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

Paste Script 1.7.5 and earlier does not properly set group memberships during execution with root privileges, which might allow remote attackers to bypass intended file-access restrictions by leveraging a web application that uses the local filesystem.