2.1
CVSSv2

CVE-2013-1069

Published: 17/02/2014 Updated: 21/02/2014
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Ubuntu Metal as a Service (MaaS) 1.2 and 1.4 uses world-readable permissions for txlongpoll.yaml, which allows local users to obtain RabbitMQ authentication credentials by reading the file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ubuntu metal as a service 1.2

ubuntu metal as a service 1.4

Vendor Advisories

The cluster could be made to run programs as an administrator ...