CVE-2014-4867 Information

Description

Cryoserver Security Appliance 7.3.x uses weak permissions for /etc/init.d/cryoserver which allows local users to gain privileges by leveraging access to the support account and running the /bin/cryo-mgmt program.

Reference

http://www.kb.cert.org/vuls/id/280844

Share on: