Логотип exploitDog
bind:CVE-2019-14924
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-14924

Количество 2

Количество 2

nvd логотип

CVE-2019-14924

больше 6 лет назад

An issue was discovered in GCDWebServer before 3.5.3. The method moveItem in the GCDWebUploader class checks the FileExtension of newAbsolutePath but not oldAbsolutePath. By leveraging this vulnerability, an adversary can make an inaccessible file be available (the credential of the app, for instance).

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-6wqf-wqm3-95wm

больше 3 лет назад

An issue was discovered in GCDWebServer before 3.5.3. The method moveItem in the GCDWebUploader class checks the FileExtension of newAbsolutePath but not oldAbsolutePath. By leveraging this vulnerability, an adversary can make an inaccessible file be available (the credential of the app, for instance).

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-14924

An issue was discovered in GCDWebServer before 3.5.3. The method moveItem in the GCDWebUploader class checks the FileExtension of newAbsolutePath but not oldAbsolutePath. By leveraging this vulnerability, an adversary can make an inaccessible file be available (the credential of the app, for instance).

CVSS3: 7.5
0%
Низкий
больше 6 лет назад
github логотип
GHSA-6wqf-wqm3-95wm

An issue was discovered in GCDWebServer before 3.5.3. The method moveItem in the GCDWebUploader class checks the FileExtension of newAbsolutePath but not oldAbsolutePath. By leveraging this vulnerability, an adversary can make an inaccessible file be available (the credential of the app, for instance).

CVSS3: 7.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу