// For flags

CVE-2008-3830

condor: allow or deny with overlapping netmasks may be ignored

Severity Score

7.2
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Condor before 7.0.5 does not properly handle when the configuration specifies overlapping netmasks in allow or deny rules, which causes the rule to be ignored and allows attackers to bypass intended access restrictions.

Condor anterior a v7.0.5 no maneja adecuadamente cuando la configuración especifica un solapamiento de máscaras de red en las reglas de "alow" (permitir) o "deny" (denegar); esto provoca que se ignore la regla y permite a los atacantes evitar las restricciones de acceso pretendidas.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2008-08-27 CVE Reserved
  • 2008-10-08 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-264: Permissions, Privileges, and Access Controls
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Condor Project
Search vendor "Condor Project"
Condor
Search vendor "Condor Project" for product "Condor"
<= 7.0.4
Search vendor "Condor Project" for product "Condor" and version " <= 7.0.4"
-
Affected
Condor Project
Search vendor "Condor Project"
Condor
Search vendor "Condor Project" for product "Condor"
6.8.0
Search vendor "Condor Project" for product "Condor" and version "6.8.0"
-
Affected
Condor Project
Search vendor "Condor Project"
Condor
Search vendor "Condor Project" for product "Condor"
6.8.1
Search vendor "Condor Project" for product "Condor" and version "6.8.1"
-
Affected
Condor Project
Search vendor "Condor Project"
Condor
Search vendor "Condor Project" for product "Condor"
6.8.2
Search vendor "Condor Project" for product "Condor" and version "6.8.2"
-
Affected
Condor Project
Search vendor "Condor Project"
Condor
Search vendor "Condor Project" for product "Condor"
6.8.3
Search vendor "Condor Project" for product "Condor" and version "6.8.3"
-
Affected
Condor Project
Search vendor "Condor Project"
Condor
Search vendor "Condor Project" for product "Condor"
6.8.4
Search vendor "Condor Project" for product "Condor" and version "6.8.4"
-
Affected
Condor Project
Search vendor "Condor Project"
Condor
Search vendor "Condor Project" for product "Condor"
6.8.5
Search vendor "Condor Project" for product "Condor" and version "6.8.5"
-
Affected
Condor Project
Search vendor "Condor Project"
Condor
Search vendor "Condor Project" for product "Condor"
6.8.6
Search vendor "Condor Project" for product "Condor" and version "6.8.6"
-
Affected
Condor Project
Search vendor "Condor Project"
Condor
Search vendor "Condor Project" for product "Condor"
6.8.7
Search vendor "Condor Project" for product "Condor" and version "6.8.7"
-
Affected
Condor Project
Search vendor "Condor Project"
Condor
Search vendor "Condor Project" for product "Condor"
6.8.8
Search vendor "Condor Project" for product "Condor" and version "6.8.8"
-
Affected
Condor Project
Search vendor "Condor Project"
Condor
Search vendor "Condor Project" for product "Condor"
6.8.9
Search vendor "Condor Project" for product "Condor" and version "6.8.9"
-
Affected
Condor Project
Search vendor "Condor Project"
Condor
Search vendor "Condor Project" for product "Condor"
7.0.0
Search vendor "Condor Project" for product "Condor" and version "7.0.0"
-
Affected
Condor Project
Search vendor "Condor Project"
Condor
Search vendor "Condor Project" for product "Condor"
7.0.1
Search vendor "Condor Project" for product "Condor" and version "7.0.1"
-
Affected
Condor Project
Search vendor "Condor Project"
Condor
Search vendor "Condor Project" for product "Condor"
7.0.2
Search vendor "Condor Project" for product "Condor" and version "7.0.2"
-
Affected
Condor Project
Search vendor "Condor Project"
Condor
Search vendor "Condor Project" for product "Condor"
7.0.3
Search vendor "Condor Project" for product "Condor" and version "7.0.3"
-
Affected