PT-2017-6667 · Sharenfs · Sharenfs

Ggzengel

·

Publicado

2017-10-18

·

Atualizado

2017-11-08

·

CVE-2015-3400

CVSS v2.0

3.5

Baixa

VetorAV:N/AC:M/Au:S/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions sharenfs version 0.6.4
Description The issue allows remote authenticated users to potentially obtain sensitive information by reading shared files due to world-readable access to the shared zfs file system.
Recommendations For sharenfs version 0.6.4, consider restricting access to the shared zfs file system to prevent unauthorized reading of sensitive files until a proper fix is available.

Correção

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2015-3400

Produtos afetados

Sharenfs