cbcvebase.
CVE-2009-0578
published 2009-03-05

CVE-2009-0578: GNOME NetworkManager before 0.7.0.99 does not properly verify privileges for dbus (1) modify and (2) delete requests, which allows local users to change or…

PriorityP422medium6.2CVSS 2.0
AVLACLAuSCNICAC
EPSS
0.34%
26.6th percentile
GNOME NetworkManager before 0.7.0.99 does not properly verify privileges for dbus (1) modify and (2) delete requests, which allows local users to change or remove the network connections of arbitrary users via unspecified vectors related to org.freedesktop.NetworkManagerUserSettings and at_console.

Affected

2 ranges
VendorProductVersion rangeFixed in
debiannetwork-manager-applet< network-manager-applet 0.7.0.99-1 (bookworm)network-manager-applet 0.7.0.99-1 (bookworm)
ubuntuubuntu_linux

CVSS provenance

nvdv2.06.2MEDIUMAV:L/AC:L/Au:S/C:N/I:C/A:C
osv6.2MEDIUM
vendor_debian6.2MEDIUM
vendor_redhat6.2MEDIUM
vendor_ubuntu4.6MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.