CVE-2015-4045: High severity open source security information management vulnerability
Published May 23, 2017
·Updated
The sudoers file in the asset discovery scanner in AlienVault OSSIM before 5.0.1 allows local users to gain privileges via a crafted nmap script.
Affected Software
1 affected component
AlienVault Open Source Security Information Management<=5.0
Remediation
Patch Available
Event History
May 23, 2017
CVE Published
via MITRE·03:56 AM
Data Sourced
via MITRE·03:56 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-4045?
CVE-2015-4045 is considered a high severity vulnerability due to its potential for privilege escalation by local users.
2
How do I fix CVE-2015-4045?
To fix CVE-2015-4045, upgrade AlienVault OSSIM to version 5.0.1 or later.
3
Who is affected by CVE-2015-4045?
CVE-2015-4045 affects users of AlienVault OSSIM versions prior to 5.0.1.
4
What type of attack does CVE-2015-4045 enable?
CVE-2015-4045 enables local users to gain elevated privileges through a crafted nmap script.
5
Is CVE-2015-4045 a network vulnerability?
CVE-2015-4045 is primarily a local privilege escalation vulnerability, not a network vulnerability.