Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8q24-hc9h-h952

Опубликовано: 20 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

GPT Academic version 3.83 is vulnerable to a Local File Read (LFI) vulnerability through its HotReload function. This function can download and extract tar.gz files from arxiv.org. Despite implementing protections against path traversal, the application overlooks the Tarslip triggered by symlinks. This oversight allows attackers to read arbitrary local files from the victim server.

GPT Academic version 3.83 is vulnerable to a Local File Read (LFI) vulnerability through its HotReload function. This function can download and extract tar.gz files from arxiv.org. Despite implementing protections against path traversal, the application overlooks the Tarslip triggered by symlinks. This oversight allows attackers to read arbitrary local files from the victim server.

EPSS

Процентиль: 41%
0.00188
Низкий

8.8 High

CVSS3

Дефекты

CWE-20
CWE-59

Связанные уязвимости

CVSS3: 8.8
nvd
11 месяцев назад

GPT Academic version 3.83 is vulnerable to a Local File Read (LFI) vulnerability through its HotReload function. This function can download and extract tar.gz files from arxiv.org. Despite implementing protections against path traversal, the application overlooks the Tarslip triggered by symlinks. This oversight allows attackers to read arbitrary local files from the victim server.

EPSS

Процентиль: 41%
0.00188
Низкий

8.8 High

CVSS3

Дефекты

CWE-20
CWE-59