Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c25q-fgpc-wc33

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

bctool in Jetico BestCrypt 0.7 and earlier trusts the user-supplied PATH to find and execute an fsck utility program, which allows local users to gain privileges by modifying the PATH to point to a Trojan horse program.

bctool in Jetico BestCrypt 0.7 and earlier trusts the user-supplied PATH to find and execute an fsck utility program, which allows local users to gain privileges by modifying the PATH to point to a Trojan horse program.

EPSS

Процентиль: 19%
0.00061
Низкий

Связанные уязвимости

nvd
около 24 лет назад

bctool in Jetico BestCrypt 0.7 and earlier trusts the user-supplied PATH to find and execute an fsck utility program, which allows local users to gain privileges by modifying the PATH to point to a Trojan horse program.

EPSS

Процентиль: 19%
0.00061
Низкий