PT-2017-6667 · Sharenfs · Sharenfs

Ggzengel

·

Published

2017-10-18

·

Updated

2017-11-08

·

CVE-2015-3400

CVSS v2.0

3.5

Low

VectorAV:N/AC:M/Au:S/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions sharenfs version 0.6.4
Description The issue allows remote authenticated users to potentially obtain sensitive information by reading shared files due to world-readable access to the shared zfs file system.
Recommendations For sharenfs version 0.6.4, consider restricting access to the shared zfs file system to prevent unauthorized reading of sensitive files until a proper fix is available.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-3400

Affected Products

Sharenfs