Логотип exploitDog
bind:"CVE-2025-47273"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-47273"

Количество 16

Количество 16

ubuntu логотип

CVE-2025-47273

около 1 месяца назад

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2025-47273

около 1 месяца назад

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 7.1
EPSS: Низкий
nvd логотип

CVE-2025-47273

около 1 месяца назад

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
EPSS: Низкий
msrc логотип

CVE-2025-47273

6 дней назад

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2025-47273

около 1 месяца назад

setuptools is a package that allows users to download, build, install, ...

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01810-1

15 дней назад

Security update for python3-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01774-1

20 дней назад

Security update for python312-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01744-1

21 день назад

Security update for python313-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01723-1

22 дня назад

Security update for python39-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01715-1

23 дня назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01709-1

24 дня назад

Security update for python310-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01704-2

14 дней назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01704-1

24 дня назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01695-1

27 дней назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01693-1

27 дней назад

Security update for python36-setuptools

EPSS: Низкий
github логотип

GHSA-5rjg-fvgr-3xxf

около 1 месяца назад

setuptools has a path traversal vulnerability in PackageIndex.download that leads to Arbitrary File Write

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 7.1
0%
Низкий
около 1 месяца назад
nvd логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
0%
Низкий
около 1 месяца назад
msrc логотип
CVSS3: 8.8
0%
Низкий
6 дней назад
debian логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, ...

CVSS3: 8.8
0%
Низкий
около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2025:01810-1

Security update for python3-setuptools

0%
Низкий
15 дней назад
suse-cvrf логотип
SUSE-SU-2025:01774-1

Security update for python312-setuptools

0%
Низкий
20 дней назад
suse-cvrf логотип
SUSE-SU-2025:01744-1

Security update for python313-setuptools

0%
Низкий
21 день назад
suse-cvrf логотип
SUSE-SU-2025:01723-1

Security update for python39-setuptools

0%
Низкий
22 дня назад
suse-cvrf логотип
SUSE-SU-2025:01715-1

Security update for python-setuptools

0%
Низкий
23 дня назад
suse-cvrf логотип
SUSE-SU-2025:01709-1

Security update for python310-setuptools

0%
Низкий
24 дня назад
suse-cvrf логотип
SUSE-SU-2025:01704-2

Security update for python-setuptools

0%
Низкий
14 дней назад
suse-cvrf логотип
SUSE-SU-2025:01704-1

Security update for python-setuptools

0%
Низкий
24 дня назад
suse-cvrf логотип
SUSE-SU-2025:01695-1

Security update for python-setuptools

0%
Низкий
27 дней назад
suse-cvrf логотип
SUSE-SU-2025:01693-1

Security update for python36-setuptools

0%
Низкий
27 дней назад
github логотип
GHSA-5rjg-fvgr-3xxf

setuptools has a path traversal vulnerability in PackageIndex.download that leads to Arbitrary File Write

0%
Низкий
около 1 месяца назад

Уязвимостей на страницу