Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gj86-cwgp-gj94

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in halo V1.1.3. A Zip Slip Directory Traversal Vulnerability in the backend,the attacker can overwrite some files, such as ftl files, .bashrc files in the user directory, and finally get the permissions of the operating system.

An issue was discovered in halo V1.1.3. A Zip Slip Directory Traversal Vulnerability in the backend,the attacker can overwrite some files, such as ftl files, .bashrc files in the user directory, and finally get the permissions of the operating system.

EPSS

Процентиль: 68%
0.00587
Низкий

Связанные уязвимости

CVSS3: 9.8
nvd
больше 5 лет назад

An issue was discovered in halo V1.1.3. A Zip Slip Directory Traversal Vulnerability in the backend,the attacker can overwrite some files, such as ftl files, .bashrc files in the user directory, and finally get the permissions of the operating system.

EPSS

Процентиль: 68%
0.00587
Низкий