CVE-2016-1235

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
11/04/2016
Last modified:
14/04/2016

Description

The oarsh script in OAR before 2.5.7 allows remote authenticated users of a cluster to obtain sensitive information and possibly gain privileges via vectors related to OpenSSH options.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:oar_project:oar:*:*:*:*:*:*:*:* 2.5.6 (including)
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*