Vulnerabilities
Vulnerable Software
Rule Set Based Access Control (RSBAC) before 1.3.5 does not properly use the Linux Kernel Crypto API for the Linux kernel 2.6.x, which allows context-dependent attackers to bypass authentication controls via unspecified vectors, possibly involving User Management password hashing and unchecked function return codes.
CVSS Score
6.4
EPSS Score
0.005
Published
2007-07-23
Rule Set Based Access Control (RSBAC) 1.2.2 through 1.2.3 allows access to sys_creat, sys_open, and sys_mknod inside jails, which could allow local users to gain elevated privileges.
CVSS Score
7.2
EPSS Score
0.002
Published
2004-08-06


Contact Us

Shodan ® - All rights reserved