cbcvebase.
CVE-2016-5404
published 2016-09-07

CVE-2016-5404: The cert_revoke command in FreeIPA does not check for the "revoke certificate" permission, which allows remote authenticated users to revoke arbitrary…

PriorityP336medium6.5CVSS 3.0
AVNACLPRLUINSUCNINAH
EPSS
2.58%
83.5th percentile
The cert_revoke command in FreeIPA does not check for the "revoke certificate" permission, which allows remote authenticated users to revoke arbitrary certificates by leveraging the "retrieve certificate" permission.

Affected

11 ranges
VendorProductVersion rangeFixed in
debianfreeipa< freeipa 4.3.2-5 (bookworm)freeipa 4.3.2-5 (bookworm)
fedoraprojectfedora
fedoraprojectfedora
fedoraprojectfedora
freeipafreeipa>= 0 < 4.3.2-54.3.2-5
freeipafreeipa>= 0 < 4.3.2-54.3.2-5
freeipafreeipa>= 0 < 4.3.2-54.3.2-5
freeipafreeipa>= 0 < 3.3.4-0ubuntu3.1+esm13.3.4-0ubuntu3.1+esm1
freeipafreeipa>= 0 < 4.3.1-0ubuntu1+esm14.3.1-0ubuntu1+esm1
oraclelinux
oraclelinux

CVSS provenance

nvdv3.06.5MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
osv6.5MEDIUM
vendor_debian6.5MEDIUM
vendor_redhat6.5MEDIUM
vendor_ubuntu6.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.