cbcvebase.
CVE-2012-0860
published 2013-01-04

CVE-2012-0860: Multiple untrusted search path vulnerabilities in Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.1, when adding a host, allow local users to gain…

PriorityP419medium6.2CVSS 2.0
AVLACHAuNCCICAC
EPSS
0.40%
32.1th percentile
Multiple untrusted search path vulnerabilities in Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.1, when adding a host, allow local users to gain privileges via a Trojan horse (1) deployUtil.py or (2) vds_bootstrap.py Python module in /tmp/.

Affected

4 ranges
VendorProductVersion rangeFixed in
redhatenterprise_virtualization_manager<= 3.0
redhatenterprise_virtualization_manager
redhatenterprise_virtualization_manager
redhatenterprise_virtualization_manager

CVSS provenance

nvdv2.06.2MEDIUMAV:L/AC:H/Au:N/C:C/I:C/A:C
vendor_redhat6.2MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.