Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8v83-6g9r-rxp5

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Untrusted search path vulnerability in dash 0.5.4, when used as a login shell, allows local users to execute arbitrary code via a Trojan horse .profile file in the current working directory.

Untrusted search path vulnerability in dash 0.5.4, when used as a login shell, allows local users to execute arbitrary code via a Trojan horse .profile file in the current working directory.

EPSS

Процентиль: 35%
0.00141
Низкий

Дефекты

CWE-78

Связанные уязвимости

ubuntu
почти 17 лет назад

Untrusted search path vulnerability in dash 0.5.4, when used as a login shell, allows local users to execute arbitrary code via a Trojan horse .profile file in the current working directory.

nvd
почти 17 лет назад

Untrusted search path vulnerability in dash 0.5.4, when used as a login shell, allows local users to execute arbitrary code via a Trojan horse .profile file in the current working directory.

debian
почти 17 лет назад

Untrusted search path vulnerability in dash 0.5.4, when used as a logi ...

EPSS

Процентиль: 35%
0.00141
Низкий

Дефекты

CWE-78