CWE-377 · 98 kayıt
Insecure Temporary File
Bu sınıftaki CVE’ler
98 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2015-5224İstismar yok | The mkostemp function in login-utils in util-linux when used incorrectly allows remote attackers to cause file name collision and possibly okernel · util-linux · CWE-377 | Kritik9,8 | — | %4,5 | 23 Ağu 2017 |
40Planlayın | CVE-2012-2666İstismar yok | golang/go in 1.0.2 fixes all.bash on shared machines.golang · go · CWE-377 | Kritik9,8 | — | %1,9 | 9 Tem 2021 |
40Planlayın | CVE-2011-4119İstismar yok | caml-light <= 0.75 uses mktemp() insecurely, and also does unsafe things in /tmp during make install.inria · caml-light · CWE-377 | Kritik9,8 | — | %1,9 | 26 Eki 2021 |
39İzleyin | CVE-2018-25068İstismar yok | devent globalpom-utils FileResourceManagerProvider.java createTmpDir temp fileglobalpom-utils project · globalpom-utils · CWE-377 | Kritik9,8 | — | %0,8 | 6 Oca 2023 |
37İzleyin | CVE-2025-14307İstismar yok | Insecure Temporary File Creation in Robocode's AutoExtract Componentrobocode · robocode · CWE-377 | Kritik9,3 | — | %0,3 | 9 Ara 2025 |
36İzleyin | CVE-2018-16494İstismar yok | In VOS and overly permissive "umask" may allow for authorized users of the server to gain unauthorized access through insecure file permissiversa-networks · versa operating system · CWE-377 | Yüksek8,8 | — | %1,9 | 26 May 2021 |
36İzleyin | CVE-2013-4561İstismar yok | In a openshift node, there is a cron job to update mcollective facts that mishandles a temporary file.redhat · openshift · CWE-377 | Kritik9,1 | — | %1,4 | 30 Haz 2022 |
33İzleyin | CVE-2022-21809İstismar yok | A file write vulnerability exists in the httpd upload.cgi functionality of InHand Networks InRouter302 V3.5.4.inhandnetworks · inrouter302 firmware · CWE-377 | Yüksek8,1 | — | %1,8 | 12 May 2022 |
32İzleyin | CVE-2018-3710İstismar yok | Gitlab Community and Enterprise Editions version 10.3.3 is vulnerable to an Insecure Temporary File in the project import component resultingitlab · gitlab · CWE-377 | Yüksek7,8 | — | %2,8 | 21 Mar 2018 |
32İzleyin | CVE-2023-43498İstismar yok | In Jenkins 2.423 and earlier, LTS 2.414.1 and earlier, processing file uploads using MultipartFormDataParser creates temporary files in the jenkins · jenkins · CWE-377 | Yüksek8,1 | — | %1,0 | 20 Eyl 2023 |
31İzleyin | CVE-2022-4817İstismar yok | centic9 jgit-cookbook temp filejgit-cookbook project · jgit-cookbook · CWE-377 | Yüksek7,8 | — | %0,5 | 28 Ara 2022 |
31İzleyin | CVE-2018-6705İstismar yok | McAfee Agent (MA) for Linux Privilege Escalation vulnerabilitymcafee · agent · CWE-377 | Yüksek7,8 | — | %0,4 | 12 Ara 2018 |
31İzleyin | CVE-2018-6704İstismar yok | McAfee Agent for Linux Privilege Escalation vulnerabilitymcafee · agent · CWE-377 | Yüksek7,8 | — | %0,4 | 12 Ara 2018 |
31İzleyin | CVE-2020-1981İstismar yok | PAN-OS: Predictable temporary filename vulnerability allows local privilege escalationpaloaltonetworks · pan-os · CWE-377 | Yüksek7,8 | — | %0,4 | 11 Mar 2020 |
31İzleyin | CVE-2023-49342İstismar yok | Temporary data passed between application components by Budgie Extras Clockworks applet could potentially be viewed or manipulated.ubuntubudgie · budgie extras · CWE-377 | Yüksek7,8 | — | %0,3 | 14 Ara 2023 |
31İzleyin | CVE-2023-49347İstismar yok | Temporary data passed between application components by Budgie Extras Windows Previews could potentially be viewed or manipulated.ubuntubudgie · budgie extras · CWE-377 | Yüksek7,8 | — | %0,3 | 14 Ara 2023 |
31İzleyin | CVE-2023-49346İstismar yok | Temporary data passed between application components by Budgie Extras WeatherShow applet could potentially be viewed or manipulated.ubuntubudgie · budgie extras · CWE-377 | Yüksek7,8 | — | %0,3 | 14 Ara 2023 |
31İzleyin | CVE-2023-49344İstismar yok | Temporary data passed between application components by Budgie Extras Window Shuffler applet could potentially be viewed or manipulated.ubuntubudgie · budgie extras · CWE-377 | Yüksek7,8 | — | %0,3 | 14 Ara 2023 |
31İzleyin | CVE-2023-49345İstismar yok | Temporary data passed between application components by Budgie Extras Takeabreak applet could potentially be viewed or manipulated.ubuntubudgie · budgie extras · CWE-377 | Yüksek7,8 | — | %0,3 | 14 Ara 2023 |
31İzleyin | CVE-2025-7707İstismar yok | World-Writable NLTK Cache Directory Vulnerability in run-llama/llama_indexllamaindex · llamaindex · CWE-377 | Yüksek7,8 | — | %0,2 | 13 Eki 2025 |
31İzleyin | CVE-2022-34387İstismar yok | Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain a privildell · supportassist for business pcs · CWE-377 | Yüksek7,8 | — | %0,2 | 10 Şub 2023 |
31İzleyin | CVE-2025-46369İstismar yok | Dell Alienware Command Center 6.x (AWCC), versions prior to 6.10.15.0, contains an Insecure Temporary File vulnerability.dell · alienware command center · CWE-377 | Yüksek7,8 | — | %0,1 | 13 Kas 2025 |
30İzleyin | CVE-2022-0736İstismar yok | Insecure Temporary File in mlflow/mlflowlfprojects · mlflow · CWE-377 | Yüksek7,5 | — | %1,6 | 23 Şub 2022 |
30İzleyin | CVE-2022-0315İstismar yok | Insecure Temporary File in horovod/horovodhorovod · horovod · CWE-377 | Yüksek7,5 | — | %1,0 | 24 Mar 2022 |
30İzleyin | CVE-2013-4253İstismar yok | The deployment script in the unsupported "OpenShift Extras" set of add-on scripts, in Red Hat Openshift 1, installs a default public key in redhat · openshift · CWE-377 | Yüksek7,5 | — | %0,6 | 19 Eki 2022 |
- CVE-2015-522440Planlayın
The mkostemp function in login-utils in util-linux when used incorrectly allows remote attackers to cause file name collision and possibly o
KritikCVSS 9,8İstismar yokEPSS %5kernel · util-linux23 Ağu 2017
- CVE-2012-266640Planlayın
golang/go in 1.0.2 fixes all.bash on shared machines.
KritikCVSS 9,8İstismar yokEPSS %2golang · go9 Tem 2021
- CVE-2011-411940Planlayın
caml-light <= 0.75 uses mktemp() insecurely, and also does unsafe things in /tmp during make install.
KritikCVSS 9,8İstismar yokEPSS %2inria · caml-light26 Eki 2021
- CVE-2018-2506839İzleyin
devent globalpom-utils FileResourceManagerProvider.java createTmpDir temp file
KritikCVSS 9,8İstismar yokEPSS %1globalpom-utils project · globalpom-utils6 Oca 2023
- CVE-2025-1430737İzleyin
Insecure Temporary File Creation in Robocode's AutoExtract Component
KritikCVSS 9,3İstismar yokEPSS %0robocode · robocode9 Ara 2025
- CVE-2018-1649436İzleyin
In VOS and overly permissive "umask" may allow for authorized users of the server to gain unauthorized access through insecure file permissi
YüksekCVSS 8,8İstismar yokEPSS %2versa-networks · versa operating system26 May 2021
- CVE-2013-456136İzleyin
In a openshift node, there is a cron job to update mcollective facts that mishandles a temporary file.
KritikCVSS 9,1İstismar yokEPSS %1redhat · openshift30 Haz 2022
- CVE-2022-2180933İzleyin
A file write vulnerability exists in the httpd upload.cgi functionality of InHand Networks InRouter302 V3.5.4.
YüksekCVSS 8,1İstismar yokEPSS %2inhandnetworks · inrouter302 firmware12 May 2022
- CVE-2018-371032İzleyin
Gitlab Community and Enterprise Editions version 10.3.3 is vulnerable to an Insecure Temporary File in the project import component resultin
YüksekCVSS 7,8İstismar yokEPSS %3gitlab · gitlab21 Mar 2018
- CVE-2023-4349832İzleyin
In Jenkins 2.423 and earlier, LTS 2.414.1 and earlier, processing file uploads using MultipartFormDataParser creates temporary files in the
YüksekCVSS 8,1İstismar yokEPSS %1jenkins · jenkins20 Eyl 2023
- CVE-2022-481731İzleyin
centic9 jgit-cookbook temp file
YüksekCVSS 7,8İstismar yokEPSS %1jgit-cookbook project · jgit-cookbook28 Ara 2022
- CVE-2018-670531İzleyin
McAfee Agent (MA) for Linux Privilege Escalation vulnerability
YüksekCVSS 7,8İstismar yokEPSS %0mcafee · agent12 Ara 2018
- CVE-2018-670431İzleyin
McAfee Agent for Linux Privilege Escalation vulnerability
YüksekCVSS 7,8İstismar yokEPSS %0mcafee · agent12 Ara 2018
- CVE-2020-198131İzleyin
PAN-OS: Predictable temporary filename vulnerability allows local privilege escalation
YüksekCVSS 7,8İstismar yokEPSS %0paloaltonetworks · pan-os11 Mar 2020
- CVE-2023-4934231İzleyin
Temporary data passed between application components by Budgie Extras Clockworks applet could potentially be viewed or manipulated.
YüksekCVSS 7,8İstismar yokEPSS %0ubuntubudgie · budgie extras14 Ara 2023
- CVE-2023-4934731İzleyin
Temporary data passed between application components by Budgie Extras Windows Previews could potentially be viewed or manipulated.
YüksekCVSS 7,8İstismar yokEPSS %0ubuntubudgie · budgie extras14 Ara 2023
- CVE-2023-4934631İzleyin
Temporary data passed between application components by Budgie Extras WeatherShow applet could potentially be viewed or manipulated.
YüksekCVSS 7,8İstismar yokEPSS %0ubuntubudgie · budgie extras14 Ara 2023
- CVE-2023-4934431İzleyin
Temporary data passed between application components by Budgie Extras Window Shuffler applet could potentially be viewed or manipulated.
YüksekCVSS 7,8İstismar yokEPSS %0ubuntubudgie · budgie extras14 Ara 2023
- CVE-2023-4934531İzleyin
Temporary data passed between application components by Budgie Extras Takeabreak applet could potentially be viewed or manipulated.
YüksekCVSS 7,8İstismar yokEPSS %0ubuntubudgie · budgie extras14 Ara 2023
- CVE-2025-770731İzleyin
World-Writable NLTK Cache Directory Vulnerability in run-llama/llama_index
YüksekCVSS 7,8İstismar yokEPSS %0llamaindex · llamaindex13 Eki 2025
- CVE-2022-3438731İzleyin
Dell SupportAssist for Home PCs (version 3.11.4 and prior) and SupportAssist for Business PCs (version 3.2.0 and prior) contain a privil
YüksekCVSS 7,8İstismar yokEPSS %0dell · supportassist for business pcs10 Şub 2023
- CVE-2025-4636931İzleyin
Dell Alienware Command Center 6.x (AWCC), versions prior to 6.10.15.0, contains an Insecure Temporary File vulnerability.
YüksekCVSS 7,8İstismar yokEPSS %0dell · alienware command center13 Kas 2025
- CVE-2022-073630İzleyin
Insecure Temporary File in mlflow/mlflow
YüksekCVSS 7,5İstismar yokEPSS %2lfprojects · mlflow23 Şub 2022
- CVE-2022-031530İzleyin
Insecure Temporary File in horovod/horovod
YüksekCVSS 7,5İstismar yokEPSS %1horovod · horovod24 Mar 2022
- CVE-2013-425330İzleyin
The deployment script in the unsupported "OpenShift Extras" set of add-on scripts, in Red Hat Openshift 1, installs a default public key in
YüksekCVSS 7,5İstismar yokEPSS %1redhat · openshift19 Eki 2022