Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Rune Andresen

#53433de 53,638
2.1CVSS total
Vulnerabilidades · 1
PT-2009-2225
2.1
2009-04-27
Zoneminder · Zoneminder · CVE-2008-6756
Name of the Vulnerable Software and Affected Versions: ZoneMinder version 1.23.3 Description: The issue allows local users to obtain the database username and password by reading the /etc/zm.conf file due to its 0644 permissions. Recommendations: For ZoneMinder version 1.23.3, consider changing the permissions of the /etc/zm.conf file to prevent unauthorized access, such as setting the permissions to 0600 to allow only the owner to read and write the file.