Security Advisory

CVE-2012-0878

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2012-05-01 19:00:00
Last updated 2024-08-06 18:38:15
Assigner redhat
State PUBLISHED

Description

Paste Script 1.7.5 and earlier does not properly set group memberships during execution with root privileges, which might allow remote attackers to bypass intended file-access restrictions by leveraging a web application that uses the local filesystem.