Vulnerability Details CVE-2004-0318
Load Sharing Facility (LSF) 4.x, 5.x, and 6.x uses the LSF_EAUTH_UID environment variable, if it exists, instead of the real UID of the user, which could allow remote attackers within the local cluster to gain privileges.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.035
EPSS Ranking 87.2%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2004-0318
-
cpe:2.3:a:platform:lsf:4.0
-
cpe:2.3:a:platform:lsf:4.2
-
cpe:2.3:a:platform:lsf:5.0
-
cpe:2.3:a:platform:lsf:5.1
-
cpe:2.3:a:platform:lsf:6.0