Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rjhx-7583-8xjr

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The "at" commands on Mac OS X 10.3.7 and earlier do not properly drop privileges, which allows local users to (1) delete arbitrary files via atrm, (2) execute arbitrary programs via the -f argument to batch, or (3) read arbitrary files via the -f argument to batch, which generates a job file that is readable by the local user.

The "at" commands on Mac OS X 10.3.7 and earlier do not properly drop privileges, which allows local users to (1) delete arbitrary files via atrm, (2) execute arbitrary programs via the -f argument to batch, or (3) read arbitrary files via the -f argument to batch, which generates a job file that is readable by the local user.

EPSS

Процентиль: 50%
0.00269
Низкий

Связанные уязвимости

nvd
почти 21 год назад

The "at" commands on Mac OS X 10.3.7 and earlier do not properly drop privileges, which allows local users to (1) delete arbitrary files via atrm, (2) execute arbitrary programs via the -f argument to batch, or (3) read arbitrary files via the -f argument to batch, which generates a job file that is readable by the local user.

EPSS

Процентиль: 50%
0.00269
Низкий