Skip to content
Noroxi

fishshell records

7 published records for vendor fishshell.

All records

7 records
  • fish (aka fish-shell) 2.0.0 before 2.1.1 does not restrict access to the configuration service (aka fish_config), which allows remote attack

    CriticalCVSS 9.8No exploitEPSS 3%

    fishshell · fishJan 28, 2020

  • fish is a command line shell.

    HighCVSS 7.8No exploitEPSS 1%

    fishshell · fishMar 14, 2022

  • CVE-2014-3219
    31Monitor

    fish before 2.1.1 allows local users to write to arbitrary files via a symlink attack on (1) /tmp/fishd.log.%s, (2) /tmp/.pac-cache.$USER, (

    HighCVSS 7.8No exploitEPSS 0%

    fishshell · fishFeb 9, 2018

  • CVE-2014-2906
    28Monitor

    The psub function in fish (aka fish-shell) 1.16.0 before 2.1.1 does not properly create temporary files, which allows local users to execute

    HighCVSS 7.0No exploitEPSS 0%

    fishshell · fishJan 28, 2020

  • CVE-2014-3856
    28Monitor

    The funced function in fish (aka fish-shell) 1.23.0 before 2.1.1 does not properly create temporary files, which allows local users to gain

    HighCVSS 7.0No exploitEPSS 0%

    fishshell · fishJan 28, 2020

  • CVE-2014-2905
    27Monitor

    fish (aka fish-shell) 1.16.0 before 2.1.1 does not properly check the credentials, which allows local users to gain privileges via the unive

    MediumCVSS 6.9No exploitEPSS 0%

    fishshell · fishMay 2, 2014

  • Command substitution output can trigger shell expansion in fish shell

    MediumCVSS 6.6No exploitEPSS 0%

    fishshell · fishDec 4, 2023