CVE-2022-29527 is a vulnerability in Amazon Ssm Agent
Published on April 20, 2022
Amazon AWS amazon-ssm-agent before 3.1.1208.0 creates a world-writable sudoers file, which allows local attackers to inject Sudo rules and escalate privileges to root. This occurs in certain situations involving a race condition.
Products Associated with CVE-2022-29527
Want to know whenever a new CVE is published for Amazon Ssm Agent? stack.watch will email you.
Exploit Probability
EPSS
0.30%
Percentile
22.13%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.