CVE-2020-26273

Published: Dic 16, 2020 Last Modified: Nov 21, 2024 EU-VD ID: EUVD-2020-18851 Aliases: GSD-2020-26273
ExploitDB:
Other exploit source:
Google Dorks:
MEDIUM 5,2
Attack Vector: local
Attack Complexity: low
Privileges Required: low
User Interaction: none
Scope: changed
Confidentiality: low
Integrity: low
Availability: none
LOW 3,6
Access Vector: local
Access Complexity: low
Authentication: none
Confidentiality: partial
Integrity: partial
Availability: none

Description

AI Translation Available

osquery is a SQL powered operating system instrumentation, monitoring, and analytics framework. In osquery before version 4.6.0, by using sqlite's ATTACH verb, someone with administrative access to osquery can cause reads and writes to arbitrary sqlite databases on disk. This _does_ allow arbitrary files to be created, but they will be sqlite databases. It does not appear to allow existing non-sqlite files to be overwritten. This has been patched in osquery 4.6.0. There are several mitigating factors and possible workarounds. In some deployments, the people with access to these interfaces may be considered administrators. In some deployments, configuration is managed by a central tool. This tool can filter for the `ATTACH` keyword. osquery can be run as non-root user. Because this also limits the desired access levels, this requires deployment specific testing and configuration.

EPSS (Exploit Prediction Scoring System)

Trend Analysis

EPSS (Exploit Prediction Scoring System)

Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.

EPSS Score
0,0011
Percentile
0,3th
Updated

EPSS Score Trend (Last 90 Days)

77

Improper Neutralization of Special Elements used in a Command ('Command Injection')

Draft
Common Consequences
Security Scopes Affected:
Integrity Confidentiality Availability
Potential Impacts:
Execute Unauthorized Code Or Commands
Applicable Platforms
Technologies: AI/ML
View CWE Details
Application

Osquery by Linuxfoundation

Version Range Affected
To 4.6.0 (exclusive)
cpe:2.3:a:linuxfoundation:osquery:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://github.com/osquery/osquery/commit/c3f9a3dae22d43ed3b4f6a403cbf89da4cba7…
https://github.com/osquery/osquery/releases/tag/4.6.0
https://github.com/osquery/osquery/security/advisories/GHSA-4g56-2482-x7q8
https://github.com/swisskyrepo/PayloadsAllTheThings/blob/master/SQL%20Injection…
https://github.com/osquery/osquery/commit/c3f9a3dae22d43ed3b4f6a403cbf89da4cba7…
https://github.com/osquery/osquery/releases/tag/4.6.0
https://github.com/osquery/osquery/security/advisories/GHSA-4g56-2482-x7q8
https://github.com/swisskyrepo/PayloadsAllTheThings/blob/master/SQL%20Injection…