Executive Summary

Summary
Title Cryoserver Security Appliance vulnerable to privilege escalation
Informations
Name VU#280844 First vendor Publication 2014-10-07
Vendor VU-CERT Last vendor Modification 2014-10-07
Severity (Vendor) N/A Revision M

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:L/AC:L/Au:S/C:C/I:C/A:C)
Cvss Base Score 6.8 Attack Range Local
Cvss Impact Score 10 Attack Complexity Low
Cvss Expoit Score 3.1 Authentication Requires single instance
Calculate full CVSS 2.0 Vectors scores

Detail

Vulnerability Note VU#280844

Cryoserver Security Appliance vulnerable to privilege escalation

Original Release date: 07 Oct 2014 | Last revised: 07 Oct 2014

Overview

Cryoserver Security Appliance 7.3.x vulnerable to privilege escalation

Description

CWE-264: Permissions, Privileges, and Access Controls


Cryoserver Security Appliance 7.3.x does not properly assign permission to the /etc/init.d/cryoserver shell script and allows the default support account to modify it using the /bin/cryo-mgmt script.

Impact

An authenticated attacker may be able to gain root access to the appliance.

Solution

The CERT/CC is currently unaware of a practical solution to this problem.

Vendor Information (Learn More)

VendorStatusDate NotifiedDate Updated
CryoserverUnknown18 Aug 201418 Aug 2014
If you are a vendor and your product is affected, let us know.

CVSS Metrics (Learn More)

GroupScoreVector
Base7.7AV:A/AC:L/Au:S/C:C/I:C/A:C
Temporal6.6E:POC/RL:U/RC:UR
Environmental4.9CDP:ND/TD:M/CR:ND/IR:ND/AR:ND

References

  • http://www.cryoserver.com/appliance/
  • http://cwe.mitre.org/data/definitions/264.html

Credit

Thanks to Chris Hernandez for reporting this vulnerability.

This document was written by Chris King.

Other Information

  • CVE IDs:CVE-2014-4867
  • Date Public:07 Oct 2014
  • Date First Published:07 Oct 2014
  • Date Last Updated:07 Oct 2014
  • Document Revision:11

Feedback

If you have feedback, comments, or additional information about this vulnerability, please send us email.

Original Source

Url : http://www.kb.cert.org/vuls/id/280844

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-264 Permissions, Privileges, and Access Controls

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 7

Alert History

If you want to see full details history, please login or register.
0
1
2
Date Informations
2014-10-15 21:27:03
  • Multiple Updates
2014-10-10 17:29:33
  • Multiple Updates
2014-10-07 21:23:50
  • First insertion