Vulnerability Details CVE-2012-5390
The standard universe shadow (condor_shadow.std) component in Condor 7.7.3 through 7.7.6, 7.8.0 before 7.8.5, and 7.9.0 does no properly check privileges, which allows remote attackers to gain privileges via a crafted standard universe job.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.019
EPSS Ranking 82.1%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2012-5390
-
cpe:2.3:a:condor_project:condor:7.7.3
-
cpe:2.3:a:condor_project:condor:7.7.4
-
cpe:2.3:a:condor_project:condor:7.7.5
-
cpe:2.3:a:condor_project:condor:7.7.6
-
cpe:2.3:a:condor_project:condor:7.8.0
-
cpe:2.3:a:condor_project:condor:7.8.1
-
cpe:2.3:a:condor_project:condor:7.8.2
-
cpe:2.3:a:condor_project:condor:7.8.3
-
cpe:2.3:a:condor_project:condor:7.8.4
-
cpe:2.3:a:condor_project:condor:7.9.0