4.4
CVSSv2

CVE-2013-1057

Published: 18/11/2013 Updated: 21/11/2013
CVSS v2 Base Score: 4.4 | Impact Score: 6.4 | Exploitability Score: 3.4
VMScore: 392
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Untrusted search path vulnerability in maas-import-pxe-files in MAAS prior to 13.10 allows local users to execute arbitrary code via a Trojan horse import_pxe_files configuration file in the current working directory.

Vulnerable Product Search on Vulmon Subscribe to Product

canonical ubuntu linux 13.04

canonical ubuntu linux 12.10

canonical ubuntu linux 12.04

canonical maas 12.04.1

canonical maas

canonical maas 12.04.2

canonical maas 12.04.3

Vendor Advisories

MAAS could be made to run programs as an administrator ...