Vulnerability Description
A race condition in nessus-adduser in Nessus 2.0.11 and possibly earlier versions, if the TMPDIR environment variable is not set, allows local users to gain privileges.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Nessus | Nessus | 2.0 |
References
- http://secunia.com/advisories/12127/Patch
- http://www.gentoo.org/security/en/glsa/glsa-200408-11.xmlPatch
- http://www.nessus.org/nessus_2_0.html
- http://www.securityfocus.com/bid/10784Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16768
- http://secunia.com/advisories/12127/Patch
- http://www.gentoo.org/security/en/glsa/glsa-200408-11.xmlPatch
- http://www.nessus.org/nessus_2_0.html
- http://www.securityfocus.com/bid/10784Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16768
FAQ
What is CVE-2004-1445?
CVE-2004-1445 is a vulnerability with a CVSS score of 3.7 (LOW). A race condition in nessus-adduser in Nessus 2.0.11 and possibly earlier versions, if the TMPDIR environment variable is not set, allows local users to gain privileges.
How severe is CVE-2004-1445?
CVE-2004-1445 has been rated LOW with a CVSS base score of 3.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2004-1445?
Check the references section above for vendor advisories and patch information. Affected products include: Nessus Nessus.