vendor:
DeleGate
by:
Larry W. Cashdollar
9,8
CVSS
CRITICAL
Local root vulnerability
264
CWE
Product Name: DeleGate
Affected Version From: 9.9.13
Affected Version To: 9.9.13
Patch Exists: YES
Related CWE: CVE-2015-8779
CPE: o:national_institute_of_advanced_industrial_science_and_technology:delegate
Metasploit:
https://www.rapid7.com/db/vulnerabilities/ubuntu-usn-2985-2/, https://www.rapid7.com/db/vulnerabilities/oracle_linux-cve-2015-8779/, https://www.rapid7.com/db/vulnerabilities/redhat_linux-cve-2015-8779/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp1-cve-2015-8779/, https://www.rapid7.com/db/vulnerabilities/amazon_linux-cve-2015-8779/, https://www.rapid7.com/db/vulnerabilities/centos_linux-cve-2015-8779/, https://www.rapid7.com/db/vulnerabilities/ubuntu-cve-2015-8779/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp2-cve-2015-8779/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2015-8779/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2015-8779/, https://www.rapid7.com/db/vulnerabilities/debian-cve-2015-8779/
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2015
Local root vulnerability in DeleGate v9.9.13
Installation of delegate 9.9.13 sets some binaries setuid root, at least one of these binaries can be used to escalate the privileges of a local user. The binary dgcpnod creates a node allowing a local unprivileged user to create files anywhere on disk. By creating a file in /etc/cron.hourly a local user can execute commands as root.
Mitigation:
Upgrade to version 9.9.14 or later.