Published on: 06/09/2021 12:00:00 AM UTC
Last Modified on: 06/10/2021 11:58:00 AM UTC
The following vulnerability was found:
lfs/backup in IPFire 2.25-core155 does not ensure that /var/ipfire/backup/bin/backup.pl is owned by the root account. It might be owned by an unprivileged account, which could potentially be used to install a Trojan horse backup.pl script that is later executed by root. Similar problems with the ownership/permissions of other files may be present as well.
- CVE-2021-33393 has been assigned by [email protected] to track the vulnerability
|backup: prevent /var/ipfire/backup/bin/backup.pl from being owned by … · ipfire/[email protected] · GitHub|| github.com |
|Commits · ipfire/ipfire-2.x · GitHub|| github.com |
|GitHub - MucahitSaratar/ipfire-2-25-auth-rce: ipfire 2.25 authenticated remote code execution|| github.com |