VulnerabilityModified
CVE-2011-4338
Shaman 1.0.9: Users can add the line askforpwd=false to his shaman.conf file, without entering the root password in shaman.
HIGH 7.8EPSS 0.40%
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.40%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Shaman 1.0.9: Users can add the line askforpwd=false to his shaman.conf file, without entering the root password in shaman. The next time shaman is run, root privileges are granted despite the fact that the user never entered the root password.
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 0.40% probability · 34th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-287
- Affected
- shaman project/shaman
- Source
- secalert@redhat.com
References
- https://bbs.archlinux.org/viewtopic.php?id=64066&p=1Exploit, Third Party Advisory
- https://www.openwall.com/lists/oss-security/2011/11/22/4Mailing List, Third Party Advisory
- https://bbs.archlinux.org/viewtopic.php?id=64066&p=1Exploit, Third Party Advisory
- https://www.openwall.com/lists/oss-security/2011/11/22/4Mailing List, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.