CVE-2017-15914

HIGH8.8EPSS 0.31%

Borg Improper Access Control vulnerability

Published: 5/13/2022Modified: 9/4/2024
Also known as:GHSA-8q8v-28rm-qw4wDEBIAN-CVE-2017-15914PYSEC-2018-105

Description

Incorrect implementation of access controls allows remote users to override repository restrictions in Borg servers 1.1.x before 1.1.3.

Affected packages (3)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH8.8CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

References (6)