CVE-2014-7298

EUVD-2014-7169
adsetgroups in Centrify Server Suite 2008 through 2014.1 and Centrify DirectControl 3.x through 4.2.0 on Linux and UNIX allows local users to read arbitrary files with root privileges by leveraging improperly protected setuid functionality.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.9 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:C/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 17%
Affected Products (NVD)
VendorProductVersion
centrifydirectcontrol
3.0
centrifydirectcontrol
4.2.0
centrifycentrify_suite
2012.5
centrifycentrify_suite
2014.1
𝑥
= Vulnerable software versions
Common Weakness Enumeration