公告ID: KYLIN-2020-10747
安全等级: 中等
产品: Kylin V3
发布日期: 2020年6月15日
CVE: CVE-2020-10747
CVSS3评分: 6.8
概述:
None 描述:
A vulnerability was found in FreeIPA. An account created with a name corresponding to an account local to a system, such as 'root', could access any enrolled machine with that account, with local system privileges. This also bypasses the absence of explicit HBAC rules. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. 系统版本:
KYLIN 3.2.x
KYLIN 3.3.x
KYLIN 3.4.x
受影响包列表:
ipa
ipa
ipa