6.9
CVSSv2

CVE-2012-4443

Published: 05/10/2012 Updated: 26/03/2020
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
VMScore: 614
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Monkey HTTP Daemon 0.9.3 uses a real UID of root and a real GID of root during execution of CGI scripts, which might allow local users to gain privileges by leveraging cgi-bin write access.

Vulnerable Product Search on Vulmon Subscribe to Product

monkey-project monkey 0.9.3