CVE-2008-2517
EUVD-2008-251203.06.2008, 14:32
The sarab.sh script in SaraB before 0.2.4 places the dar program's encryption key on the command line, which allows local users to obtain sensitive information by listing the process.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| sarab | sarab | 𝑥 ≤ 0.2.3 |
| sarab | sarab | 0.2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References