Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gvrg-2xvq-7j38

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.7

Описание

w3m through 0.5.3 does not properly handle temporary files when the ~/.w3m directory is unwritable, which allows a local attacker to craft a symlink attack to overwrite arbitrary files.

w3m through 0.5.3 does not properly handle temporary files when the ~/.w3m directory is unwritable, which allows a local attacker to craft a symlink attack to overwrite arbitrary files.

EPSS

Процентиль: 40%
0.00179
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-59

Связанные уязвимости

CVSS3: 4.7
ubuntu
около 8 лет назад

w3m through 0.5.3 does not properly handle temporary files when the ~/.w3m directory is unwritable, which allows a local attacker to craft a symlink attack to overwrite arbitrary files.

CVSS3: 4.3
redhat
около 8 лет назад

w3m through 0.5.3 does not properly handle temporary files when the ~/.w3m directory is unwritable, which allows a local attacker to craft a symlink attack to overwrite arbitrary files.

CVSS3: 4.7
nvd
около 8 лет назад

w3m through 0.5.3 does not properly handle temporary files when the ~/.w3m directory is unwritable, which allows a local attacker to craft a symlink attack to overwrite arbitrary files.

CVSS3: 4.7
debian
около 8 лет назад

w3m through 0.5.3 does not properly handle temporary files when the ~/ ...

suse-cvrf
почти 7 лет назад

Security update for w3m

EPSS

Процентиль: 40%
0.00179
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-59