Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 40

Количество 40

fstec логотип

BDU:2025-08604

больше 1 года назад

Уязвимость библиотеки упрощения упаковки проектов setuptools, связанная с неверным ограничением имени пути к каталогу с ограниченным доступом, позволяющая нарушителю скомпрометировать уязвимую систему

CVSS3: 8.8
EPSS: Низкий
redos логотип

ROS-20250630-08

около 1 года назад

Уязвимость python3-setuptools

CVSS3: 8.8
EPSS: Низкий
altlinux логотип

ALT-PU-2025-8238

около 1 года назад

ALT-PU-2025-8238: package `python3-module-setuptools` update to version 80.7.1-alt1

CVSS3: 8.8
EPSS: Низкий
altlinux логотип

ALT-PU-2025-8222

больше 1 года назад

ALT-PU-2025-8222: package `python3-module-setuptools` update to version 57.4.0-alt2.p10.1

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2025-47273

больше 1 года назад

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2025-47273

больше 1 года назад

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 7.1
EPSS: Низкий
nvd логотип

CVE-2025-47273

больше 1 года назад

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
EPSS: Низкий
msrc логотип

CVE-2025-47273

больше 1 года назад

setuptools has a path traversal vulnerability in PackageIndex.download that leads to Arbitrary File Write

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2025-47273

больше 1 года назад

setuptools is a package that allows users to download, build, install, ...

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01810-1

больше 1 года назад

Security update for python3-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01774-1

больше 1 года назад

Security update for python312-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01744-1

больше 1 года назад

Security update for python313-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01723-1

больше 1 года назад

Security update for python39-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01715-1

больше 1 года назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01709-1

больше 1 года назад

Security update for python310-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01704-2

больше 1 года назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01704-1

больше 1 года назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01695-1

больше 1 года назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01693-1

больше 1 года назад

Security update for python36-setuptools

EPSS: Низкий
rocky логотип

RLSA-2025:9940

12 месяцев назад

Moderate: python-setuptools security update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2025-08604

Уязвимость библиотеки упрощения упаковки проектов setuptools, связанная с неверным ограничением имени пути к каталогу с ограниченным доступом, позволяющая нарушителю скомпрометировать уязвимую систему

CVSS3: 8.8
2%
Низкий
больше 1 года назад
redos логотип
ROS-20250630-08

Уязвимость python3-setuptools

CVSS3: 8.8
2%
Низкий
около 1 года назад
altlinux логотип
ALT-PU-2025-8238

ALT-PU-2025-8238: package `python3-module-setuptools` update to version 80.7.1-alt1

CVSS3: 8.8
2%
Низкий
около 1 года назад
altlinux логотип
ALT-PU-2025-8222

ALT-PU-2025-8222: package `python3-module-setuptools` update to version 57.4.0-alt2.p10.1

CVSS3: 8.8
2%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
2%
Низкий
больше 1 года назад
redhat логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 7.1
2%
Низкий
больше 1 года назад
nvd логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
2%
Низкий
больше 1 года назад
msrc логотип
CVE-2025-47273

setuptools has a path traversal vulnerability in PackageIndex.download that leads to Arbitrary File Write

CVSS3: 8.8
2%
Низкий
больше 1 года назад
debian логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, ...

CVSS3: 8.8
2%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01810-1

Security update for python3-setuptools

2%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01774-1

Security update for python312-setuptools

2%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01744-1

Security update for python313-setuptools

2%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01723-1

Security update for python39-setuptools

2%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01715-1

Security update for python-setuptools

2%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01709-1

Security update for python310-setuptools

2%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01704-2

Security update for python-setuptools

2%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01704-1

Security update for python-setuptools

2%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01695-1

Security update for python-setuptools

2%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01693-1

Security update for python36-setuptools

2%
Низкий
больше 1 года назад
rocky логотип
RLSA-2025:9940

Moderate: python-setuptools security update

2%
Низкий
12 месяцев назад

Уязвимостей на страницу