Перейти к содержимому
Noroxi

CWE-377 · 98 записей

Insecure Temporary File

CVE этого класса

98 записей

  • CVE-2015-5224
    40В плане

    The mkostemp function in login-utils in util-linux when used incorrectly allows remote attackers to cause file name collision and possibly o

    КритическаяCVSS 9,8Эксплойта нетEPSS 5 %

    kernel · util-linux23 авг. 2017 г.

  • CVE-2012-2666
    40В плане

    golang/go in 1.0.2 fixes all.bash on shared machines.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    golang · go9 июл. 2021 г.

  • CVE-2011-4119
    40В плане

    caml-light <= 0.75 uses mktemp() insecurely, and also does unsafe things in /tmp during make install.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    inria · caml-light26 окт. 2021 г.

  • CVE-2018-25068
    39Наблюдать

    devent globalpom-utils FileResourceManagerProvider.java createTmpDir temp file

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    globalpom-utils project · globalpom-utils6 янв. 2023 г.

  • CVE-2025-14307
    37Наблюдать

    Insecure Temporary File Creation in Robocode's AutoExtract Component

    КритическаяCVSS 9,3Эксплойта нетEPSS 0 %

    robocode · robocode9 дек. 2025 г.

  • CVE-2018-16494
    36Наблюдать

    In VOS and overly permissive "umask" may allow for authorized users of the server to gain unauthorized access through insecure file permissi

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    versa-networks · versa operating system26 мая 2021 г.

  • CVE-2013-4561
    36Наблюдать

    In a openshift node, there is a cron job to update mcollective facts that mishandles a temporary file.

    КритическаяCVSS 9,1Эксплойта нетEPSS 1 %

    redhat · openshift30 июн. 2022 г.

  • CVE-2022-21809
    33Наблюдать

    A file write vulnerability exists in the httpd upload.cgi functionality of InHand Networks InRouter302 V3.5.4.

    ВысокаяCVSS 8,1Эксплойта нетEPSS 2 %

    inhandnetworks · inrouter302 firmware12 мая 2022 г.

  • CVE-2018-3710
    32Наблюдать

    Gitlab Community and Enterprise Editions version 10.3.3 is vulnerable to an Insecure Temporary File in the project import component resultin

    ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %

    gitlab · gitlab21 мар. 2018 г.

  • CVE-2023-43498
    32Наблюдать

    In Jenkins 2.423 and earlier, LTS 2.414.1 and earlier, processing file uploads using MultipartFormDataParser creates temporary files in the

    ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %

    jenkins · jenkins20 сент. 2023 г.

  • CVE-2022-4817
    31Наблюдать

    centic9 jgit-cookbook temp file

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    jgit-cookbook project · jgit-cookbook28 дек. 2022 г.

  • CVE-2018-6705
    31Наблюдать

    McAfee Agent (MA) for Linux Privilege Escalation vulnerability

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    mcafee · agent12 дек. 2018 г.

  • CVE-2018-6704
    31Наблюдать

    McAfee Agent for Linux Privilege Escalation vulnerability

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    mcafee · agent12 дек. 2018 г.

  • CVE-2020-1981
    31Наблюдать

    PAN-OS: Predictable temporary filename vulnerability allows local privilege escalation

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    paloaltonetworks · pan-os11 мар. 2020 г.

  • CVE-2023-49342
    31Наблюдать

    Temporary data passed between application components by Budgie Extras Clockworks applet could potentially be viewed or manipulated.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    ubuntubudgie · budgie extras14 дек. 2023 г.

  • CVE-2023-49347
    31Наблюдать

    Temporary data passed between application components by Budgie Extras Windows Previews could potentially be viewed or manipulated.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    ubuntubudgie · budgie extras14 дек. 2023 г.

  • CVE-2023-49346
    31Наблюдать

    Temporary data passed between application components by Budgie Extras WeatherShow applet could potentially be viewed or manipulated.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    ubuntubudgie · budgie extras14 дек. 2023 г.

  • CVE-2023-49344
    31Наблюдать

    Temporary data passed between application components by Budgie Extras Window Shuffler applet could potentially be viewed or manipulated.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    ubuntubudgie · budgie extras14 дек. 2023 г.

  • CVE-2023-49345
    31Наблюдать

    Temporary data passed between application components by Budgie Extras Takeabreak applet could potentially be viewed or manipulated.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    ubuntubudgie · budgie extras14 дек. 2023 г.

  • CVE-2025-7707
    31Наблюдать

    World-Writable NLTK Cache Directory Vulnerability in run-llama/llama_index

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    llamaindex · llamaindex13 окт. 2025 г.

  • CVE-2022-34387
    31Наблюдать

    Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain a privil

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    dell · supportassist for business pcs10 февр. 2023 г.

  • CVE-2025-46369
    31Наблюдать

    Dell Alienware Command Center 6.x (AWCC), versions prior to 6.10.15.0, contains an Insecure Temporary File vulnerability.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    dell · alienware command center13 нояб. 2025 г.

  • CVE-2022-0736
    30Наблюдать

    Insecure Temporary File in mlflow/mlflow

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    lfprojects · mlflow23 февр. 2022 г.

  • CVE-2022-0315
    30Наблюдать

    Insecure Temporary File in horovod/horovod

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    horovod · horovod24 мар. 2022 г.

  • CVE-2013-4253
    30Наблюдать

    The deployment script in the unsupported "OpenShift Extras" set of add-on scripts, in Red Hat Openshift 1, installs a default public key in

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    redhat · openshift19 окт. 2022 г.

Все классы уязвимостей