CVE-2008-2517
03.06.2008, 14:32
The sarab.sh script in SaraB before 0.2.4 places the dar program's encryption key on the command line, which allows local users to obtain sensitive information by listing the process.Enginsight
Vendor | Product | Version |
---|---|---|
sarab | sarab | 𝑥 ≤ 0.2.3 |
sarab | sarab | 0.2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References