Описание
In freewvs before 0.1.1, a directory structure of more than 1000 nested directories can interrupt a freewvs scan due to Python's recursion limit and os.walk(). This can be problematic in a case where an administrator scans the dirs of potentially untrusted users. This has been patched in 0.1.1.
Ссылки
- PatchThird Party Advisory
- Third Party Advisory
- PatchThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.1.1 (исключая)
cpe:2.3:a:schokokeks:freewvs:*:*:*:*:*:*:*:*
EPSS
Процентиль: 39%
0.00174
Низкий
2.8 Low
CVSS3
3.3 Low
CVSS3
4 Medium
CVSS2
Дефекты
CWE-400
CWE-674
Связанные уязвимости
CVSS3: 2.8
github
больше 1 года назад
freewvs's nested directory structure can interrupt scan
EPSS
Процентиль: 39%
0.00174
Низкий
2.8 Low
CVSS3
3.3 Low
CVSS3
4 Medium
CVSS2
Дефекты
CWE-400
CWE-674