Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-37372

Опубликовано: 09 янв. 2025
Источник: nvd
CVSS3: 3.6
EPSS Низкий

Описание

The Permission Model assumes that any path starting with two backslashes \ has a four-character prefix that can be ignored, which is not always true. This subtle bug leads to vulnerable edge cases.

EPSS

Процентиль: 39%
0.00477
Низкий

3.6 Low

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 3.6
ubuntu
больше 1 года назад

The Permission Model assumes that any path starting with two backslashes \ has a four-character prefix that can be ignored, which is not always true. This subtle bug leads to vulnerable edge cases.

CVSS3: 3.6
redhat
больше 1 года назад

The Permission Model assumes that any path starting with two backslashes \ has a four-character prefix that can be ignored, which is not always true. This subtle bug leads to vulnerable edge cases.

msrc
11 месяцев назад

The Permission Model assumes that any path starting with two backslashes \ has a four-character prefix that can be ignored, which is not always true. This subtle bug leads to vulnerable edge cases.

CVSS3: 3.6
debian
больше 1 года назад

The Permission Model assumes that any path starting with two backslash ...

CVSS3: 3.6
github
больше 1 года назад

The Permission Model assumes that any path starting with two backslashes \ has a four-character prefix that can be ignored, which is not always true. This subtle bug leads to vulnerable edge cases.

EPSS

Процентиль: 39%
0.00477
Низкий

3.6 Low

CVSS3

Дефекты

CWE-22