Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2011-0010

check.c in sudo 1.7.x before 1.7.4p5, when a Runas group is configured, does not require a password for command execution that involves a gid change but no uid change, which allows local users to bypass an intended authentication requirement via the -g option to a sudo command.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 30.8%
CVSS Severity
CVSS v2 Score 4.4
References
Products affected by CVE-2011-0010


Contact Us

Shodan ® - All rights reserved