Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) 3.0.1 and earlier allows remote attackers to bypass host-based authentication and submit arbitrary jobs via a modified PBS_O_HOST variable to the qsub program.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2011-08-15 12:55
Updated : 2017-08-28 18:29
NVD link : CVE-2011-2907
Mitre link : CVE-2011-2907
JSON object : View
CWE
CWE-287
Improper Authentication
Products Affected
clusterresources
- torque_resource_manager