Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2016-7035

An authorization flaw was found in Pacemaker before 1.1.16, where it did not properly guard its IPC interface. An attacker with an unprivileged account on a Pacemaker node could use this flaw to, for example, force the Local Resource Manager daemon to execute a script as root and thereby gain root access on the machine.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 30.5%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 7.2
References
Products affected by CVE-2016-7035


Contact Us

Shodan ® - All rights reserved