Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fx3c-2ghc-cxfq

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The FSFindFolder API in CarbonCore in Apple Mac OS X before 10.6.7 provides a world-readable directory in response to a call with the kTemporaryFolderType flag, which allows local users to obtain potentially sensitive information by accessing this directory.

The FSFindFolder API in CarbonCore in Apple Mac OS X before 10.6.7 provides a world-readable directory in response to a call with the kTemporaryFolderType flag, which allows local users to obtain potentially sensitive information by accessing this directory.

EPSS

Процентиль: 15%
0.00049
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
почти 15 лет назад

The FSFindFolder API in CarbonCore in Apple Mac OS X before 10.6.7 provides a world-readable directory in response to a call with the kTemporaryFolderType flag, which allows local users to obtain potentially sensitive information by accessing this directory.

EPSS

Процентиль: 15%
0.00049
Низкий

Дефекты

CWE-200