Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 38

Количество 38

fstec логотип

BDU:2025-08604

около 1 года назад

Уязвимость библиотеки упрощения упаковки проектов setuptools, связанная с неверным ограничением имени пути к каталогу с ограниченным доступом, позволяющая нарушителю скомпрометировать уязвимую систему

CVSS3: 8.8
EPSS: Низкий
redos логотип

ROS-20250630-08

около 1 года назад

Уязвимость python3-setuptools

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2025-47273

около 1 года назад

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2025-47273

около 1 года назад

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 7.1
EPSS: Низкий
nvd логотип

CVE-2025-47273

около 1 года назад

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
EPSS: Низкий
msrc логотип

CVE-2025-47273

около 1 года назад

setuptools has a path traversal vulnerability in PackageIndex.download that leads to Arbitrary File Write

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2025-47273

около 1 года назад

setuptools is a package that allows users to download, build, install, ...

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01810-1

около 1 года назад

Security update for python3-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01774-1

около 1 года назад

Security update for python312-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01744-1

около 1 года назад

Security update for python313-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01723-1

около 1 года назад

Security update for python39-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01715-1

около 1 года назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01709-1

около 1 года назад

Security update for python310-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01704-2

около 1 года назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01704-1

около 1 года назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01695-1

около 1 года назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01693-1

около 1 года назад

Security update for python36-setuptools

EPSS: Низкий
rocky логотип

RLSA-2025:9940

10 месяцев назад

Moderate: python-setuptools security update

EPSS: Низкий
rocky логотип

RLSA-2025:13578

10 месяцев назад

Moderate: python3.11-setuptools security update

EPSS: Низкий
rocky логотип

RLSA-2025:12834

10 месяцев назад

Moderate: python3.12-setuptools security update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2025-08604

Уязвимость библиотеки упрощения упаковки проектов setuptools, связанная с неверным ограничением имени пути к каталогу с ограниченным доступом, позволяющая нарушителю скомпрометировать уязвимую систему

CVSS3: 8.8
1%
Низкий
около 1 года назад
redos логотип
ROS-20250630-08

Уязвимость python3-setuptools

CVSS3: 8.8
1%
Низкий
около 1 года назад
ubuntu логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
1%
Низкий
около 1 года назад
redhat логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 7.1
1%
Низкий
около 1 года назад
nvd логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
1%
Низкий
около 1 года назад
msrc логотип
CVE-2025-47273

setuptools has a path traversal vulnerability in PackageIndex.download that leads to Arbitrary File Write

CVSS3: 8.8
1%
Низкий
около 1 года назад
debian логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, ...

CVSS3: 8.8
1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01810-1

Security update for python3-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01774-1

Security update for python312-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01744-1

Security update for python313-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01723-1

Security update for python39-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01715-1

Security update for python-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01709-1

Security update for python310-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01704-2

Security update for python-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01704-1

Security update for python-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01695-1

Security update for python-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01693-1

Security update for python36-setuptools

1%
Низкий
около 1 года назад
rocky логотип
RLSA-2025:9940

Moderate: python-setuptools security update

1%
Низкий
10 месяцев назад
rocky логотип
RLSA-2025:13578

Moderate: python3.11-setuptools security update

1%
Низкий
10 месяцев назад
rocky логотип
RLSA-2025:12834

Moderate: python3.12-setuptools security update

1%
Низкий
10 месяцев назад

Уязвимостей на страницу

exploitDog - Комплексное решение для обнаружения, оценки и устранения уязвимостей.