CVE-2008-0732 describes a local privilege escalation vulnerability affecting Apache Geronimo on SUSE Linux, where the init script improperly follows symlinks during a chown operation. This could allow a local attacker to gain unauthorized access to unspecified files or directories. The vulnerability has a low CVSS score of 2.1 (AV:L/AC:L/Au:N/C:P/I:N/A:N), indicating it requires local access and has a low impact on confidentiality. There is no known exploit intelligence, including Metasploit or Nuclei modules, and it is not listed in CISA's KEV catalog. Community discussion and media coverage are minimal, suggesting a low level of public awareness and exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:apache:geronimo:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:P/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.6 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.