CVE-2013-5364
Published Jan 26, 2014
Last updated 6 years ago
Overview
- Description
- Secunia CSI Agent 6.0.0.15017 and earlier, 6.0.1.1007 and earlier, and 7.0.0.21 and earlier, when running on Red Hat Linux, uses world-readable and world-writable permissions for /etc/csia_config.xml, which allows local users to change CSI Agent configuration by modifying this file.
- Source
- PSIRT-CNA@flexerasoftware.com
- NVD status
- Analyzed
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 3.6
- Impact score
- 4.9
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:P/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-264
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:secunia:csi_agent:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "993C7084-676E-4DDB-811B-E609FF91427C", "versionEndIncluding": "6.0.0.15017", "versionStartIncluding": "6.0.0" }, { "criteria": "cpe:2.3:a:secunia:csi_agent:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "46F01C80-2AE1-4047-8BDD-CEB80192EA8E", "versionEndIncluding": "6.0.1.1007", "versionStartIncluding": "6.0.1" }, { "criteria": "cpe:2.3:a:secunia:csi_agent:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6D1B0AEB-9D0F-4CF0-AB92-B01A12AA39A9", "versionEndIncluding": "7.0.0.21", "versionStartIncluding": "7.0.0" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:redhat:enterprise_linux:*:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "4CECD221-9715-4ECD-88E5-3252EFCA784F" } ], "operator": "OR" } ], "operator": "AND" } ]