Vulnerabilities
Vulnerable Software
Firewalld:  >> Firewalld  >> 0.4.3.2  Security Vulnerabilities
A flaw was found in firewalld. A local unprivileged user can exploit this vulnerability by mis-authorizing two runtime D-Bus (Desktop Bus) setters, setZoneSettings2 and setPolicySettings. This mis-authorization allows the user to modify the runtime firewall state without proper authentication, leading to unauthorized changes in network security configurations.
CVSS Score
5.5
EPSS Score
0.0
Published
2026-03-27
firewalld.py in firewalld before 0.4.3.3 allows local users to bypass authentication and modify firewall configurations via the (1) addPassthrough, (2) removePassthrough, (3) addEntry, (4) removeEntry, or (5) setEntries D-Bus API method.
CVSS Score
5.5
EPSS Score
0.001
Published
2017-04-19


Contact Us

Shodan ® - All rights reserved