Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fmvw-q9g6-wfgh

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

An issue was discovered in Leptonica through 1.75.3. The gplotMakeOutput function does not block '/' characters in the gplot rootname argument, potentially leading to path traversal and arbitrary file overwrite.

An issue was discovered in Leptonica through 1.75.3. The gplotMakeOutput function does not block '/' characters in the gplot rootname argument, potentially leading to path traversal and arbitrary file overwrite.

EPSS

Процентиль: 42%
0.00204
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 9.1
ubuntu
почти 8 лет назад

An issue was discovered in Leptonica through 1.75.3. The gplotMakeOutput function does not block '/' characters in the gplot rootname argument, potentially leading to path traversal and arbitrary file overwrite.

CVSS3: 9.1
nvd
почти 8 лет назад

An issue was discovered in Leptonica through 1.75.3. The gplotMakeOutput function does not block '/' characters in the gplot rootname argument, potentially leading to path traversal and arbitrary file overwrite.

CVSS3: 9.1
debian
почти 8 лет назад

An issue was discovered in Leptonica through 1.75.3. The gplotMakeOutp ...

EPSS

Процентиль: 42%
0.00204
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-22