Vulnerability Details CVE-2005-2807
frox 0.7.18, when running setuid root, does not properly drop privileges when reading a configuration file, which allows local users to read portions of arbitrary files via the -f command line option.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 33.2%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-2005-2807
-
cpe:2.3:a:frox:frox:0.7.18