6.2
CVSSv2

CVE-2013-4482

Published: 23/11/2013 Updated: 22/04/2019
CVSS v2 Base Score: 6.2 | Impact Score: 10 | Exploitability Score: 1.9
VMScore: 552
Vector: AV:L/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

Untrusted search path vulnerability in python-paste-script (aka paster) in Luci 0.26.0, when started using the initscript, allows local users to gain privileges via a Trojan horse .egg-info file in the (1) current working directory or (2) its parent directories.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat enterprise linux 6.0

scientificlinux luci 0.26.0

Vendor Advisories

Synopsis Moderate: luci security, bug fix, and enhancement update Type/Severity Security Advisory: Moderate Topic Updated luci packages that fix two security issues, several bugs, and addtwo enhancements are now available for Red Hat Enterprise Linux 6The Red Hat Security Response Team has rated this updat ...