Home
MEDIUM: 4.2 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:NDefault status
unaffected
Any version before 23.11.11
affected
24 (custom) before 24.05.8
affected
24.06 (custom) before 24.11.5
affected
Description
In SchedMD Slurm before 24.11.5, 24.05.8, and 23.11.11, the accounting system can allow a Coordinator to promote a user to Administrator.
Problem types
CWE-863 Incorrect Authorization
Product status
Any version before 23.11.11
24 (custom) before 24.05.8
24.06 (custom) before 24.11.5
References
www.schedmd.com/security-policy/
lists.schedmd.com/...ssage/B73QHKW6TKE2T5KDWVPIWNE5H4KWX667/