Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7vjq-vrv9-8wc8

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Emacs 21.2.1 does not prompt or warn the user before executing Lisp code in the local variables section of a text file, which allows user-assisted attackers to execute arbitrary commands, as demonstrated using the mode-name variable.

Emacs 21.2.1 does not prompt or warn the user before executing Lisp code in the local variables section of a text file, which allows user-assisted attackers to execute arbitrary commands, as demonstrated using the mode-name variable.

EPSS

Процентиль: 91%
0.06477
Низкий

Связанные уязвимости

nvd
больше 21 года назад

Emacs 21.2.1 does not prompt or warn the user before executing Lisp code in the local variables section of a text file, which allows user-assisted attackers to execute arbitrary commands, as demonstrated using the mode-name variable.

debian
больше 21 года назад

Emacs 21.2.1 does not prompt or warn the user before executing Lisp co ...

EPSS

Процентиль: 91%
0.06477
Низкий