Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ph3v-wxq4-4xc6

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and earlier allows local users to delete arbitrary files via vectors involving a modified input filename in which (1) a final "z" character is replaced by a "t" character or (2) a final "t" character is replaced by a "z" character.

The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and earlier allows local users to delete arbitrary files via vectors involving a modified input filename in which (1) a final "z" character is replaced by a "t" character or (2) a final "t" character is replaced by a "z" character.

EPSS

Процентиль: 20%
0.00064
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
почти 17 лет назад

The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and earlier allows local users to delete arbitrary files via vectors involving a modified input filename in which (1) a final "z" character is replaced by a "t" character or (2) a final "t" character is replaced by a "z" character.

redhat
почти 17 лет назад

The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and earlier allows local users to delete arbitrary files via vectors involving a modified input filename in which (1) a final "z" character is replaced by a "t" character or (2) a final "t" character is replaced by a "z" character.

nvd
почти 17 лет назад

The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and earlier allows local users to delete arbitrary files via vectors involving a modified input filename in which (1) a final "z" character is replaced by a "t" character or (2) a final "t" character is replaced by a "z" character.

debian
почти 17 лет назад

The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and ea ...

EPSS

Процентиль: 20%
0.00064
Низкий

Дефекты

CWE-20