ZeroHour

CVE-2017-15918

PoC ×2
CVSS 3.0
7.8 high
EPSS
1%p65
Published
()
Modified
Description

Sera 1.2 stores the user's login password in plain text in their home directory. This makes privilege escalation trivial and also exposes the user and system keychains to local attacks.

Vendors
ignitum
Products
sera
Weakness
CWE-522
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.