Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mjjv-394r-rc2r

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.9

Описание

In OnlineJudge 2.0, the sandbox has an incorrect access control vulnerability that can write a file anywhere. A user can write a directory listing to /tmp, and can leak file data with a #include.

In OnlineJudge 2.0, the sandbox has an incorrect access control vulnerability that can write a file anywhere. A user can write a directory listing to /tmp, and can leak file data with a #include.

EPSS

Процентиль: 75%
0.00921
Низкий

9.9 Critical

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 9.9
nvd
больше 7 лет назад

In OnlineJudge 2.0, the sandbox has an incorrect access control vulnerability that can write a file anywhere. A user can write a directory listing to /tmp, and can leak file data with a #include.

EPSS

Процентиль: 75%
0.00921
Низкий

9.9 Critical

CVSS3

Дефекты

CWE-22