ZeroHour

CVE-2017-9450

CVSS 3.0
7.8 high
EPSS
<1%p31
Published
()
Modified
Description

The Amazon Web Services (AWS) CloudFormation bootstrap tools package (aka aws-cfn-bootstrap) before 1.4-19.10 allows local users to execute arbitrary code with root privileges by leveraging the ability to create files in an unspecified directory.

Vendors
amazon
Products
amazon web services cloudformation bootstrap
Weakness
CWE-269
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.