CVE-2014-4867

Cryoserver Security Appliance 7.3.x uses weak permissions for /etc/init.d/cryoserver, which allows local users to gain privileges by leveraging access to the support account and running the /bin/cryo-mgmt program.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:S/C:C/I:C/A:C
certccCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 7%
VendorProductVersion
cryoservercryoserver_security_appliance
7.3.0
cryoservercryoserver_security_appliance
7.3.0:a
cryoservercryoserver_security_appliance
7.3.1
cryoservercryoserver_security_appliance
7.3.1:a
cryoservercryoserver_security_appliance
7.3.2
cryoservercryoserver_security_appliance
7.3.3
cryoservercryoserver_security_appliance
7.3.4
𝑥
= Vulnerable software versions
Common Weakness Enumeration