4.9
CVSSv2

CVE-2015-5189

Published: 03/09/2015 Updated: 13/02/2023
CVSS v2 Base Score: 4.9 | Impact Score: 4.9 | Exploitability Score: 6.8
VMScore: 436
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:N

Vulnerability Summary

Race condition in pcsd in PCS 0.9.139 and previous versions uses a global variable to validate usernames, which allows remote authenticated users to gain privileges by sending a command that is checked for security after another user is authenticated.

Vulnerable Product Search on Vulmon Subscribe to Product

pacemaker\\/corosync configuration system project pacemaker\\/corosync configuration system