CVE-2018-1079
Published Apr 12, 2018pcs before version 0.9.164 and 0.10 is vulnerable to a privilege escalation via authorized user malicious REST call. The REST interface of the pcsd service did not properly saniti…
Vendor/product archive
2 CVEs tagged to clusterlabs / pacemaker_command_line_interface — 0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.
pcs before version 0.9.164 and 0.10 is vulnerable to a privilege escalation via authorized user malicious REST call. The REST interface of the pcsd service did not properly saniti…
pcs before versions 0.9.164 and 0.10 is vulnerable to a debug parameter removal bypass. REST interface of the pcsd service did not properly remove the pcs debug argument from the…