MagniComp SysInfo 10-H76

CPE Details

MagniComp SysInfo 10-H76
10-h76
2020-06-03
14h15 +00:00
2020-06-03
14h15 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:magnicomp:sysinfo:10-h76:*:*:*:*:*:*:*

Informations

Vendor

magnicomp

Product

sysinfo

Version

10-h76

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2018-7268 2018-05-21 13h00 +00:00 MagniComp SysInfo before 10-H81, as shipped with BMC BladeLogic Automation and other products, contains an information exposure vulnerability in which a local unprivileged user is able to read any root (uid 0) owned file on the system, regardless of the file permissions. Confidential information such as password hashes (/etc/shadow) or other secrets (such as log files or private keys) can be leaked to the attacker. The vulnerability has a confidentiality impact, but has no direct impact on system integrity or availability.
5.5
Medium
CVE-2018-9310 2018-04-30 15h00 +00:00 An issue was discovered in MagniComp SysInfo before 10-H82 if setuid root (the default). This vulnerability allows any local user on a Linux/UNIX system to run SysInfo and obtain a root shell, which can be used to compromise the local system.
7.8
High