Описание
In Appwrite CLI before 3.0.0, when using the login command, the credentials of the Appwrite user are stored in a ~/.appwrite/prefs.json file with 0644 as UNIX permissions. Any user of the local system can access those credentials.
Ссылки
- Product
- ExploitThird Party Advisory
- Product
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 3.0.0 (исключая)
cpe:2.3:a:appwrite:command_line_interface:*:*:*:*:*:*:*:*
EPSS
Процентиль: 5%
0.00022
Низкий
5.5 Medium
CVSS3
Дефекты
CWE-798
CWE-798
Связанные уязвимости
EPSS
Процентиль: 5%
0.00022
Низкий
5.5 Medium
CVSS3
Дефекты
CWE-798
CWE-798