Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p749-q5wf-mcpv

Опубликовано: 06 апр. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

SageMath FlintQS 1.0 relies on pathnames under TMPDIR (typically world-writable), which (for example) allows a local user to overwrite files with the privileges of a different user (who is running FlintQS).

SageMath FlintQS 1.0 relies on pathnames under TMPDIR (typically world-writable), which (for example) allows a local user to overwrite files with the privileges of a different user (who is running FlintQS).

EPSS

Процентиль: 11%
0.00038
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 3 года назад

SageMath FlintQS 1.0 relies on pathnames under TMPDIR (typically world-writable), which (for example) allows a local user to overwrite files with the privileges of a different user (who is running FlintQS).

CVSS3: 5.5
nvd
почти 3 года назад

SageMath FlintQS 1.0 relies on pathnames under TMPDIR (typically world-writable), which (for example) allows a local user to overwrite files with the privileges of a different user (who is running FlintQS).

CVSS3: 5.5
debian
почти 3 года назад

SageMath FlintQS 1.0 relies on pathnames under TMPDIR (typically world ...

EPSS

Процентиль: 11%
0.00038
Низкий

5.5 Medium

CVSS3