CVE-2013-4481
23.11.2013, 11:55
Race condition in Luci 0.26.0 creates /var/lib/luci/etc/luci.ini with world-readable permissions before restricting the permissions, which allows local users to read the file and obtain sensitive information such as "authentication secrets."
Vendor | Product | Version |
---|---|---|
scientificlinux | luci | 0.26.0 |
redhat | enterprise_linux | 6.0 |
𝑥
= Vulnerable software versions