cbcvebase.
CVE-2013-2012
published 2019-10-31

CVE-2013-2012: autojump before 21.5.8 allows local users to gain privileges via a Trojan horse custom_install directory in the current working directory.

PriorityP434high7.3CVSS 3.1
AVLACLPRLUIRSUCHIHAH
EPSS
0.41%
34.0th percentile
autojump before 21.5.8 allows local users to gain privileges via a Trojan horse custom_install directory in the current working directory.

Affected

7 ranges
VendorProductVersion rangeFixed in
autojumpautojump
autojump_projectautojump< 21.5.821.5.8
debianautojump
debiandebian_linux
debiandebian_linux
debiandebian_linux
openstacknova>= 0 < 12.0.0a012.0.0a0

CVSS provenance

nvdv3.17.3HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
nvdv2.04.4MEDIUMAV:L/AC:M/Au:N/C:P/I:P/A:P
ghsa4.3MEDIUM
vendor_redhat10.0CRITICAL
vendor_debian7.3LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.