VDB

CVE-2008-3424

CVE-2008-3424 PUBLISHED CVSS 7.5 HIGH

Condor before 7.0.4 does not properly handle wildcards in the ALLOW_WRITE, DENY_WRITE, HOSTALLOW_WRITE, or HOSTDENY_WRITE configuration variables in authorization policy lists, which might allow remote attackers to bypass intended access restrictions.

EPSS 2.65% · 84.5th percentile

Risk Scores

CVSS 2.0
7.5
EPSS Score
2.65%
84.5th percentile

Affected Products

VendorProductVersions
n/an/an/a
condor_projectcondor0
fedoraprojectfedora9

Timeline

  • Jul 31, 2008 CVE Published
  • Feb 4, 2022 EPSS Score
  • Mar 29, 2022 EPSS Score
  • May 21, 2022 EPSS Score
  • Jul 12, 2022 EPSS Score
  • Oct 27, 2022 EPSS Score
  • Dec 19, 2022 EPSS Score
  • Feb 9, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 3, 2023 EPSS Score
  • May 26, 2023 EPSS Score
  • Jul 18, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›