Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xvf3-hffw-q8j7

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

bitcoind in Bitcoin Core through 0.21.0 can create a new file in an arbitrary directory (e.g., outside the ~/.bitcoin directory) via a dumpwallet RPC call.

bitcoind in Bitcoin Core through 0.21.0 can create a new file in an arbitrary directory (e.g., outside the ~/.bitcoin directory) via a dumpwallet RPC call.

EPSS

Процентиль: 54%
0.00315
Низкий

7.5 High

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 7.5
nvd
около 5 лет назад

bitcoind in Bitcoin Core through 0.21.0 can create a new file in an arbitrary directory (e.g., outside the ~/.bitcoin directory) via a dumpwallet RPC call. NOTE: this reportedly does not violate the security model of Bitcoin Core, but can violate the security model of a fork that has implemented dumpwallet restrictions

CVSS3: 7.5
debian
около 5 лет назад

bitcoind in Bitcoin Core through 0.21.0 can create a new file in an ar ...

suse-cvrf
почти 4 года назад

Security update for bitcoin

EPSS

Процентиль: 54%
0.00315
Низкий

7.5 High

CVSS3

Дефекты

CWE-20