CVE-2014-4867

Publication date

2014-10-10 10:00:00

Family

certcc

State

PUBLISHED

Description

Cryoserver Security Appliance 7.3.x uses weak permissions for /etc/init.d/cryoserver, which allows local users to gain privileges by leveraging access to the support account and running the /bin/cryo-mgmt program.