Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c354-cjmx-4hgf

Опубликовано: 23 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 2.5

Описание

BigFix Patch Download Plug-ins are affected by insecure support for file URI scheme. It could allow a malicious operator to attempt to download files using the file:// URI scheme.

BigFix Patch Download Plug-ins are affected by insecure support for file URI scheme. It could allow a malicious operator to attempt to download files using the file:// URI scheme.

EPSS

Процентиль: 6%
0.00023
Низкий

2.5 Low

CVSS3

Дефекты

CWE-84

Связанные уязвимости

CVSS3: 2.5
nvd
около 1 года назад

BigFix Patch Download Plug-ins are affected by insecure support for file URI scheme. It could allow a malicious operator to attempt to download files using the file:// URI scheme.

EPSS

Процентиль: 6%
0.00023
Низкий

2.5 Low

CVSS3

Дефекты

CWE-84