Логотип exploitDog
bind:CVE-2017-8921
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-8921

Количество 4

Количество 4

ubuntu логотип

CVE-2017-8921

больше 8 лет назад

In FlightGear before 2017.2.1, the FGCommand interface allows overwriting any file the user has write access to, but not with arbitrary data: only with the contents of a FlightGear flightplan (XML). A resource such as a malicious third-party aircraft could exploit this to damage files belonging to the user. Both this issue and CVE-2016-9956 are directory traversal vulnerabilities in Autopilot/route_mgr.cxx - this one exists because of an incomplete fix for CVE-2016-9956.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2017-8921

больше 8 лет назад

In FlightGear before 2017.2.1, the FGCommand interface allows overwriting any file the user has write access to, but not with arbitrary data: only with the contents of a FlightGear flightplan (XML). A resource such as a malicious third-party aircraft could exploit this to damage files belonging to the user. Both this issue and CVE-2016-9956 are directory traversal vulnerabilities in Autopilot/route_mgr.cxx - this one exists because of an incomplete fix for CVE-2016-9956.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2017-8921

больше 8 лет назад

In FlightGear before 2017.2.1, the FGCommand interface allows overwrit ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-cm86-qqq5-r5v2

больше 3 лет назад

In FlightGear before 2017.2.1, the FGCommand interface allows overwriting any file the user has write access to, but not with arbitrary data: only with the contents of a FlightGear flightplan (XML). A resource such as a malicious third-party aircraft could exploit this to damage files belonging to the user. Both this issue and CVE-2016-9956 are directory traversal vulnerabilities in Autopilot/route_mgr.cxx - this one exists because of an incomplete fix for CVE-2016-9956.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2017-8921

In FlightGear before 2017.2.1, the FGCommand interface allows overwriting any file the user has write access to, but not with arbitrary data: only with the contents of a FlightGear flightplan (XML). A resource such as a malicious third-party aircraft could exploit this to damage files belonging to the user. Both this issue and CVE-2016-9956 are directory traversal vulnerabilities in Autopilot/route_mgr.cxx - this one exists because of an incomplete fix for CVE-2016-9956.

CVSS3: 7.5
1%
Низкий
больше 8 лет назад
nvd логотип
CVE-2017-8921

In FlightGear before 2017.2.1, the FGCommand interface allows overwriting any file the user has write access to, but not with arbitrary data: only with the contents of a FlightGear flightplan (XML). A resource such as a malicious third-party aircraft could exploit this to damage files belonging to the user. Both this issue and CVE-2016-9956 are directory traversal vulnerabilities in Autopilot/route_mgr.cxx - this one exists because of an incomplete fix for CVE-2016-9956.

CVSS3: 7.5
1%
Низкий
больше 8 лет назад
debian логотип
CVE-2017-8921

In FlightGear before 2017.2.1, the FGCommand interface allows overwrit ...

CVSS3: 7.5
1%
Низкий
больше 8 лет назад
github логотип
GHSA-cm86-qqq5-r5v2

In FlightGear before 2017.2.1, the FGCommand interface allows overwriting any file the user has write access to, but not with arbitrary data: only with the contents of a FlightGear flightplan (XML). A resource such as a malicious third-party aircraft could exploit this to damage files belonging to the user. Both this issue and CVE-2016-9956 are directory traversal vulnerabilities in Autopilot/route_mgr.cxx - this one exists because of an incomplete fix for CVE-2016-9956.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу