CVE-2019-14257

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
21/08/2019
Last modified:
27/08/2019

Description

pyraw in Zenoss 2.5.3 allows local privilege escalation by modifying environment variables to redirect execution before privileges are dropped, aka ZEN-31765.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:zenoss:zenoss:2.5.3:*:*:*:*:*:*:*