7.2
CVSSv2

CVE-2012-2053

Published: 05/04/2012 Updated: 20/12/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The sudoers file in the Linux system configuration in F5 FirePass 6.0.0 up to and including 6.1.0 and 7.0.0 does not require a password for executing commands as root, which allows local users to gain privileges via the sudo program, as demonstrated by the user account that executes PHP scripts, a different vulnerability than CVE-2012-1777.

Vulnerable Product Search on Vulmon Subscribe to Product

f5 firepass 6.0

f5 firepass 6.1.0

f5 firepass 7.0.0