Eval injection vulnerability in luci 0.26.0 allows remote authenticated users with certain permissions to execute arbitrary Python code via a crafted cluster configuration.
2014-10-15T14:55:06.917
2025-04-12T10:46:40.837
Deferred
CVSSv2: 6.0 (MEDIUM)
AV:N/AC:M/Au:S/C:P/I:P/A:P
6.8
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | scientificlinux | luci | 0.26.0 | Yes |