CVE-2012-5605
published 2013-01-04CVE-2012-5605: Grinder in Red Hat CloudForms before 1.1 uses world-writable permissions for /var/lib/pulp/cache/grinder/, which allows local users to modify grinder cache…
PriorityP44low2.1CVSS 2.0
AVLACLAuNCNIPAN
EPSS
0.36%
27.9th percentile
Grinder in Red Hat CloudForms before 1.1 uses world-writable permissions for /var/lib/pulp/cache/grinder/, which allows local users to modify grinder cache files.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | cloudforms | <= 1.0 | — |
CVSS provenance
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:P/A:N
vendor_redhat2.1LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-x2c2-p9xj-wcjm: Grinder in Red Hat CloudForms before 1
ghsa_unreviewed·2022-05-17
CVE-2012-5605 [LOW] GHSA-x2c2-p9xj-wcjm: Grinder in Red Hat CloudForms before 1
Grinder in Red Hat CloudForms before 1.1 uses world-writable permissions for /var/lib/pulp/cache/grinder/, which allows local users to modify grinder cache files.
Red Hat
CVE-2012-5605: Grinder in Red Hat CloudForms before 1
vendor_redhat·2013-01-04·CVSS 2.1
CVE-2012-5605 [LOW] CWE-276 CVE-2012-5605: Grinder in Red Hat CloudForms before 1
Grinder in Red Hat CloudForms before 1.1 uses world-writable permissions for /var/lib/pulp/cache/grinder/, which allows local users to modify grinder cache files.
A flaw was found in Grinder, a component of Red Hat CloudForms. This vulnerability allows a local user to modify Grinder's cache files due to incorrect world-writable permissions set on the `/var/lib/pulp/cache/grinder/` directory. This could lead to unauthorized data tampering within the application's cache.
No detection rules found.
http://osvdb.org/88141http://rhn.redhat.com/errata/RHSA-2012-1543.htmlhttp://secunia.com/advisories/51472http://www.securityfocus.com/bid/56819https://bugzilla.redhat.com/show_bug.cgi?id=828447https://bugzilla.redhat.com/show_bug.cgi?id=882138https://exchange.xforce.ibmcloud.com/vulnerabilities/80550http://osvdb.org/88141http://rhn.redhat.com/errata/RHSA-2012-1543.htmlhttp://secunia.com/advisories/51472http://www.securityfocus.com/bid/56819https://bugzilla.redhat.com/show_bug.cgi?id=828447https://bugzilla.redhat.com/show_bug.cgi?id=882138https://exchange.xforce.ibmcloud.com/vulnerabilities/80550
2013-01-04
Published