Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mpgw-pwqr-q9jp

Опубликовано: 08 дек. 2021
Источник: github
Github: Не прошло ревью
CVSS3: 7

Описание

World-writable permissions on the /tmp/tmate/sessions directory in tmate-ssh-server 2.3.0 allow a local attacker to compromise the integrity of session handling, or obtain the read-write session ID from a read-only session symlink in this directory.

World-writable permissions on the /tmp/tmate/sessions directory in tmate-ssh-server 2.3.0 allow a local attacker to compromise the integrity of session handling, or obtain the read-write session ID from a read-only session symlink in this directory.

EPSS

Процентиль: 9%
0.00032
Низкий

7 High

CVSS3

Дефекты

CWE-281
CWE-732

Связанные уязвимости

CVSS3: 7
ubuntu
около 4 лет назад

World-writable permissions on the /tmp/tmate/sessions directory in tmate-ssh-server 2.3.0 allow a local attacker to compromise the integrity of session handling, or obtain the read-write session ID from a read-only session symlink in this directory.

CVSS3: 7
nvd
около 4 лет назад

World-writable permissions on the /tmp/tmate/sessions directory in tmate-ssh-server 2.3.0 allow a local attacker to compromise the integrity of session handling, or obtain the read-write session ID from a read-only session symlink in this directory.

CVSS3: 7
debian
около 4 лет назад

World-writable permissions on the /tmp/tmate/sessions directory in tma ...

EPSS

Процентиль: 9%
0.00032
Низкий

7 High

CVSS3

Дефекты

CWE-281
CWE-732