cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-7090,https://securityvulnerability.io/vulnerability/CVE-2023-7090,Sudo: improper handling of ipa_hostname leads to privilege mismanagement,"A vulnerability exists in the Sudo utility, stemming from improper handling of the ipa_hostname setting in the /etc/sssd/sssd.conf file. This flaw can result in a scenario where client hosts retain elevated privileges even after they have been revoked, leading to significant security risks. Applications relying on Sudo for permission management may inadvertently permit unauthorized access, endangering system integrity and user data.",Red Hat,"Sudo,Red Hat Enterprise Linux 6,Red Hat Enterprise Linux 7,Red Hat Enterprise Linux 8,Red Hat Enterprise Linux 9,Fedora",8.8,HIGH,0.001180000021122396,false,false,false,false,,false,false,2023-12-23T23:15:00.000Z,0 CVE-2005-4890,https://securityvulnerability.io/vulnerability/CVE-2005-4890,,"There is a possible tty hijacking in shadow 4.x before 4.1.5 and sudo 1.x before 1.7.4 via ""su - user -c program"". The user session can be escaped to the parent session by using the TIOCSTI ioctl to push characters into the input buffer to be read by the next process.",Red Hat,"shadow,sudo",7.8,HIGH,0.0006699999794363976,false,false,false,false,,false,false,2019-11-04T18:38:09.000Z,0