Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-22f8-7h52-6pfg

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

(1) bash before 1.14.7, and (2) tcsh 6.05 allow local users to gain privileges via directory names that contain shell metacharacters (` back-tick), which can cause the commands enclosed in the directory name to be executed when the shell expands filenames using the \w option in the PS1 variable.

(1) bash before 1.14.7, and (2) tcsh 6.05 allow local users to gain privileges via directory names that contain shell metacharacters (` back-tick), which can cause the commands enclosed in the directory name to be executed when the shell expands filenames using the \w option in the PS1 variable.

EPSS

Процентиль: 19%
0.00061
Низкий

Связанные уязвимости

nvd
почти 29 лет назад

(1) bash before 1.14.7, and (2) tcsh 6.05 allow local users to gain privileges via directory names that contain shell metacharacters (` back-tick), which can cause the commands enclosed in the directory name to be executed when the shell expands filenames using the \w option in the PS1 variable.

EPSS

Процентиль: 19%
0.00061
Низкий