Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-74r4-r4fg-v53q

Опубликовано: 29 нояб. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Insecure permissions in Chocolatey Cmder package v1.3.20 and below grants all users in the Authenticated Users group write privileges for the path C:\tools\Cmder and all files located in that folder.

Insecure permissions in Chocolatey Cmder package v1.3.20 and below grants all users in the Authenticated Users group write privileges for the path C:\tools\Cmder and all files located in that folder.

EPSS

Процентиль: 33%
0.0013
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 4.3
nvd
около 3 лет назад

Insecure permissions in Chocolatey Cmder package v1.3.20 and below grants all users in the Authenticated Users group write privileges for the path C:\tools\Cmder and all files located in that folder.

EPSS

Процентиль: 33%
0.0013
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-732