Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f8cq-cpqj-phg9

Опубликовано: 30 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 3.8

Описание

The Vagrant VMWare Utility Windows installer targeted a custom location with a non-protected path that could be modified by an unprivileged user, introducing potential for unauthorized file system writes. This vulnerability, CVE-2024-10228, was fixed in Vagrant VMWare Utility 1.0.23

The Vagrant VMWare Utility Windows installer targeted a custom location with a non-protected path that could be modified by an unprivileged user, introducing potential for unauthorized file system writes. This vulnerability, CVE-2024-10228, was fixed in Vagrant VMWare Utility 1.0.23

EPSS

Процентиль: 13%
0.00043
Низкий

3.8 Low

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 3.8
nvd
больше 1 года назад

The Vagrant VMWare Utility Windows installer targeted a custom location with a non-protected path that could be modified by an unprivileged user, introducing potential for unauthorized file system writes. This vulnerability, CVE-2024-10228, was fixed in Vagrant VMWare Utility 1.0.23

CVSS3: 3.8
fstec
больше 1 года назад

Уязвимость сервиса Vagrant VMWare Utility, связанная с неправильным присвоением разрешений для критичного ресурса, позволяющая нарушителю получить доступ на чтение и изменение файлов

EPSS

Процентиль: 13%
0.00043
Низкий

3.8 Low

CVSS3

Дефекты

CWE-732