5.8
CVSSv2

CVE-2013-1058

Published: 23/11/2013 Updated: 25/11/2013
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:P

Vulnerability Summary

maas-import-pxe-files in MAAS prior to 13.10 does not verify the integrity of downloaded files, which allows remote malicious users to modify these files via a man-in-the-middle (MITM) attack.

Vulnerable Product Search on Vulmon Subscribe to Product

canonical ubuntu linux 13.04

canonical ubuntu linux 12.10

canonical ubuntu linux 12.04

canonical maas

canonical maas 12.04.2

canonical maas 12.04.3

canonical maas 12.04.1

Vendor Advisories

MAAS could be made to run programs as an administrator ...