ClusterLabs crmsh 1.2.4

CPE Details

ClusterLabs crmsh 1.2.4
1.2.4
2021-01-14
19h15 +00:00
2021-01-14
19h15 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:clusterlabs:crmsh:1.2.4:*:*:*:*:*:*:*

Informations

Vendor

clusterlabs

Product

crmsh

Version

1.2.4

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2020-35459 2021-01-12 13h32 +00:00 An issue was discovered in ClusterLabs crmsh through 4.2.1. Local attackers able to call "crm history" (when "crm" is run) were able to execute commands via shell code injection to the crm history commandline, potentially allowing escalation of privileges.
7.8
Haute