Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In OpenDoas from 6.6 to 6.8 the users PATH variable was incorrectly inherited by authenticated executions if the authenticating rule allowed the user to execute any command. Rules that only allowed to authenticated user to execute specific commands were not affected by this issue.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Duncaen OpenDoas 安全漏洞
Vulnerability Description
Duncaen OpenDoas是Duncaen个人开发者的一款可为Linux系统提供有限 Sudo 功能的程序。 Duncaen OpenDoas 6.6 through 6.8 存在安全漏洞,该漏洞源于当更改用户上下文时,路径被不安全的不完整重置。
CVSS Information
N/A
Vulnerability Type
N/A