ISC Kea
cpe:2.3:a:isc:kea:*:*:*:*:*:*:*
- >= 2.4.0, <= 2.4.1
- >= 2.6.0, <= 2.6.2
- >= 2.7.0, <= 2.7.8
A vulnerability exists in ISC Kea DHCP server versions 2.4.0 through 2.4.1, 2.6.0 through 2.6.2, and 2.7.0 through 2.7.8, where log files or lease files may be accessible to all users. This unintended file permission issue can lead to the exposure of sensitive information.
The vulnerability could result in unauthorized access to log and lease files, potentially exposing sensitive information such as DHCP lease details and server activity logs.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.