CVE-2015-5284
ipa-kra-install in FreeIPA before 4.2.2 puts the CA agent certificate and private key in /etc/httpd/alias/kra-agent.pem,
ipa-kra-install in FreeIPA before 4.2.2 puts the CA agent certificate and private key in /etc/httpd/alias/kra-agent.pem, which is world readable.
CRITICAL · CVSS 9.8
EPSS 0.00297
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0