Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 38

Количество 38

github логотип

GHSA-5rjg-fvgr-3xxf

около 1 года назад

setuptools has a path traversal vulnerability in PackageIndex.download that leads to Arbitrary File Write

EPSS: Низкий
ubuntu логотип

CVE-2025-47273

около 1 года назад

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2025-47273

около 1 года назад

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 7.1
EPSS: Низкий
nvd логотип

CVE-2025-47273

около 1 года назад

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
EPSS: Низкий
msrc логотип

CVE-2025-47273

около 1 года назад

setuptools has a path traversal vulnerability in PackageIndex.download that leads to Arbitrary File Write

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2025-47273

около 1 года назад

setuptools is a package that allows users to download, build, install, ...

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01810-1

около 1 года назад

Security update for python3-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01774-1

около 1 года назад

Security update for python312-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01744-1

около 1 года назад

Security update for python313-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01723-1

около 1 года назад

Security update for python39-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01715-1

около 1 года назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01709-1

около 1 года назад

Security update for python310-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01704-2

около 1 года назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01704-1

около 1 года назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01695-1

около 1 года назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01693-1

около 1 года назад

Security update for python36-setuptools

EPSS: Низкий
rocky логотип

RLSA-2025:9940

10 месяцев назад

Moderate: python-setuptools security update

EPSS: Низкий
rocky логотип

RLSA-2025:13578

10 месяцев назад

Moderate: python3.11-setuptools security update

EPSS: Низкий
rocky логотип

RLSA-2025:12834

10 месяцев назад

Moderate: python3.12-setuptools security update

EPSS: Низкий
rocky логотип

RLSA-2025:11463

10 месяцев назад

Moderate: fence-agents security update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-5rjg-fvgr-3xxf

setuptools has a path traversal vulnerability in PackageIndex.download that leads to Arbitrary File Write

1%
Низкий
около 1 года назад
ubuntu логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
1%
Низкий
около 1 года назад
redhat логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 7.1
1%
Низкий
около 1 года назад
nvd логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVSS3: 8.8
1%
Низкий
около 1 года назад
msrc логотип
CVE-2025-47273

setuptools has a path traversal vulnerability in PackageIndex.download that leads to Arbitrary File Write

CVSS3: 8.8
1%
Низкий
около 1 года назад
debian логотип
CVE-2025-47273

setuptools is a package that allows users to download, build, install, ...

CVSS3: 8.8
1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01810-1

Security update for python3-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01774-1

Security update for python312-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01744-1

Security update for python313-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01723-1

Security update for python39-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01715-1

Security update for python-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01709-1

Security update for python310-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01704-2

Security update for python-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01704-1

Security update for python-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01695-1

Security update for python-setuptools

1%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01693-1

Security update for python36-setuptools

1%
Низкий
около 1 года назад
rocky логотип
RLSA-2025:9940

Moderate: python-setuptools security update

1%
Низкий
10 месяцев назад
rocky логотип
RLSA-2025:13578

Moderate: python3.11-setuptools security update

1%
Низкий
10 месяцев назад
rocky логотип
RLSA-2025:12834

Moderate: python3.12-setuptools security update

1%
Низкий
10 месяцев назад
rocky логотип
RLSA-2025:11463

Moderate: fence-agents security update

1%
Низкий
10 месяцев назад

Уязвимостей на страницу