Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mgcc-v376-cqg5

Опубликовано: 22 мар. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Path traversal attack is possible and write outside of the intended directory and may access sensitive information. If a file name is specified that already exists on the file system, then the original file will be overwritten.

Path traversal attack is possible and write outside of the intended directory and may access sensitive information. If a file name is specified that already exists on the file system, then the original file will be overwritten.

EPSS

Процентиль: 36%
0.00149
Низкий

8.1 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 8.1
nvd
почти 2 года назад

Path traversal attack is possible and write outside of the intended directory and may access sensitive information. If a file name is specified that already exists on the file system, then the original file will be overwritten.

EPSS

Процентиль: 36%
0.00149
Низкий

8.1 High

CVSS3

Дефекты

CWE-22