Read Time:21 Second

Posted by SBA – Advisory via Fulldisclosure on Jan 26

# CloudLinux CageFS Insufficiently Restricted Proxy Command #

Link:
https://github.com/sbaresearch/advisories/tree/public/2020/SBA-ADV-20200707-02_CloudLinux_CageFS_Insufficiently_Restricted_Proxy_Commands

## Vulnerability Overview ##

CloudLinux CageFS 7.0.8-2 or below insufficiently restricts file paths
supplied to the `sendmail` proxy command. This allows local users to read
and write arbitrary files of certain file formats outside the…

Read More