Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3247-33gc-rgpq

Опубликовано: 04 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

Improper input validation vulnerability in InstallAgent in Galaxy Store prior to version 4.5.41.8 allows attacker to overwrite files stored in a specific path. The patch adds proper protection to prevent overwrite to existing files.

Improper input validation vulnerability in InstallAgent in Galaxy Store prior to version 4.5.41.8 allows attacker to overwrite files stored in a specific path. The patch adds proper protection to prevent overwrite to existing files.

EPSS

Процентиль: 25%
0.00083
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 6.2
nvd
почти 4 года назад

Improper input validation vulnerability in InstallAgent in Galaxy Store prior to version 4.5.41.8 allows attacker to overwrite files stored in a specific path. The patch adds proper protection to prevent overwrite to existing files.

EPSS

Процентиль: 25%
0.00083
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-20