Insecure permissions in hwameistor v0.14.3 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 27 Aug 2024 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-266 | |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-27T19:44:09.327Z
Reserved: 2024-05-30T00:00:00
Link: CVE-2024-36534
Updated: 2024-08-02T03:37:05.332Z
Status : Awaiting Analysis
Published: 2024-07-24T20:15:03.967
Modified: 2024-11-21T09:22:21.297
Link: CVE-2024-36534
No data.
OpenCVE Enrichment
Updated: 2025-07-12T15:42:44Z
Weaknesses