amazon amazon-ssm-agent CVE-2022-29527 is a vulnerability in Amazon Ssm Agent
Published on April 20, 2022

Amazon AWS amazon-ssm-agent before 3.1.1208.0 creates a world-writable sudoers file, which allows local attackers to inject Sudo rules and escalate privileges to root. This occurs in certain situations involving a race condition.

NVD


Products Associated with CVE-2022-29527

Want to know whenever a new CVE is published for Amazon Ssm Agent? stack.watch will email you.

 

Exploit Probability

EPSS
0.30%
Percentile
22.13%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.