Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2004-1452 | First vendor Publication | 2004-12-31 |
Vendor | Cve | Last vendor Modification | 2017-07-11 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:L/AC:L/Au:N/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 7.2 | Attack Range | Local |
Cvss Impact Score | 10 | Attack Complexity | Low |
Cvss Expoit Score | 3.9 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Tomcat before 5.0.27-r3 in Gentoo Linux sets the default permissions on the init scripts as tomcat:tomcat, but executes the scripts with root privileges, which could allow local users in the tomcat group to execute arbitrary commands as root by modifying the scripts. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1452 |
CPE : Common Platform Enumeration
OpenVAS Exploits
Date | Description |
---|---|
2008-09-24 | Name : Gentoo Security Advisory GLSA 200408-15 (tomcat) File : nvt/glsa_200408_15.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
8851 | Gentoo Tomcat Group Root Privilege Escalation Gentoo Linux tomcat ebuild contains a flaw that may allow a malicious user which is a member of the tomcat group to gain access to unauthorized privileges. The issue is triggered when the tomcat server scripts are executed with root privileges such as during normal boot process. These scripts are editable by members of the tomcat group. This flaw may lead to a loss of Integrity. |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2004-08-30 | Name : The remote Gentoo host is missing one or more security-related patches. File : gentoo_GLSA-200408-15.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2021-05-04 12:02:30 |
|
2021-04-22 01:02:41 |
|
2020-05-23 00:16:01 |
|
2017-07-11 12:01:37 |
|
2016-04-26 12:59:08 |
|
2014-02-17 10:28:50 |
|
2013-05-11 11:45:10 |
|