Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2026-79992

Опубликовано: 29 авг. 2026
Источник: msrc
CVSS3: 7.8
EPSS Низкий

Описание

Emacs: local shell command injection through the user field in emacs tramp

EPSS

Процентиль: 3%
0.00135
Низкий

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
11 дней назад

A flaw was found in Emacs TRAMP. A local attacker could exploit this vulnerability by processing maliciously crafted filenames. This occurs because TRAMP concatenates login arguments without proper sanitization, which are then passed to a local shell. Successful exploitation could lead to arbitrary code execution.

CVSS3: 7.8
redhat
15 дней назад

A flaw was found in Emacs TRAMP. A local attacker could exploit this vulnerability by processing maliciously crafted filenames. This occurs because TRAMP concatenates login arguments without proper sanitization, which are then passed to a local shell. Successful exploitation could lead to arbitrary code execution.

CVSS3: 7.8
nvd
11 дней назад

A flaw was found in Emacs TRAMP. A local attacker could exploit this vulnerability by processing maliciously crafted filenames. This occurs because TRAMP concatenates login arguments without proper sanitization, which are then passed to a local shell. Successful exploitation could lead to arbitrary code execution.

CVSS3: 7.8
debian
11 дней назад

A flaw was found in Emacs TRAMP. A local attacker could exploit this v ...

CVSS3: 7.8
github
11 дней назад

A flaw was found in Emacs TRAMP. A local attacker could exploit this vulnerability by processing maliciously crafted filenames. This occurs because TRAMP concatenates login arguments without proper sanitization, which are then passed to a local shell. Successful exploitation could lead to arbitrary code execution.

EPSS

Процентиль: 3%
0.00135
Низкий

7.8 High

CVSS3