Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7975-2qr9-g542

Опубликовано: 09 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 3.6

Описание

The Permission Model assumes that any path starting with two backslashes \ has a four-character prefix that can be ignored, which is not always true. This subtle bug leads to vulnerable edge cases.

The Permission Model assumes that any path starting with two backslashes \ has a four-character prefix that can be ignored, which is not always true. This subtle bug leads to vulnerable edge cases.

EPSS

Процентиль: 39%
0.00477
Низкий

3.6 Low

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 3.6
ubuntu
больше 1 года назад

The Permission Model assumes that any path starting with two backslashes \ has a four-character prefix that can be ignored, which is not always true. This subtle bug leads to vulnerable edge cases.

CVSS3: 3.6
redhat
больше 1 года назад

The Permission Model assumes that any path starting with two backslashes \ has a four-character prefix that can be ignored, which is not always true. This subtle bug leads to vulnerable edge cases.

CVSS3: 3.6
nvd
больше 1 года назад

The Permission Model assumes that any path starting with two backslashes \ has a four-character prefix that can be ignored, which is not always true. This subtle bug leads to vulnerable edge cases.

msrc
11 месяцев назад

The Permission Model assumes that any path starting with two backslashes \ has a four-character prefix that can be ignored, which is not always true. This subtle bug leads to vulnerable edge cases.

CVSS3: 3.6
debian
больше 1 года назад

The Permission Model assumes that any path starting with two backslash ...

EPSS

Процентиль: 39%
0.00477
Низкий

3.6 Low

CVSS3

Дефекты

CWE-22