← back
CVE-2017-9232

CVE-2017-9232

50Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 49%
from disclosure to weapon260 days
Published on NVDMay 28
1st PoC+260d
metasploitApr 13
exploitation probability
49%top 1% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Juju before 1.25.12, 2.0.x before 2.0.4, and 2.1.x before 2.1.3 uses a UNIX domain socket without setting appropriate permissions, allowing privilege escalation by users on the system to root.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.