Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-29465

Опубликовано: 06 апр. 2023
Источник: nvd
CVSS3: 5.5
EPSS Низкий

Описание

SageMath FlintQS 1.0 relies on pathnames under TMPDIR (typically world-writable), which (for example) allows a local user to overwrite files with the privileges of a different user (who is running FlintQS).

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:sagemath:flintqs:1.0:*:*:*:*:*:*:*

EPSS

Процентиль: 7%
0.00028
Низкий

5.5 Medium

CVSS3

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 3 года назад

SageMath FlintQS 1.0 relies on pathnames under TMPDIR (typically world-writable), which (for example) allows a local user to overwrite files with the privileges of a different user (who is running FlintQS).

CVSS3: 5.5
debian
почти 3 года назад

SageMath FlintQS 1.0 relies on pathnames under TMPDIR (typically world ...

CVSS3: 5.5
github
почти 3 года назад

SageMath FlintQS 1.0 relies on pathnames under TMPDIR (typically world-writable), which (for example) allows a local user to overwrite files with the privileges of a different user (who is running FlintQS).

EPSS

Процентиль: 7%
0.00028
Низкий

5.5 Medium

CVSS3

Дефекты

NVD-CWE-noinfo