Vulnerability Details CVE-2017-1000485
Nylas Mail Lives 2.2.2 uses 0755 permissions for $HOME/.nylas-mail, which allows local users to obtain sensitive authentication information via standard filesystem operations.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 9.9%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 2.1
Products affected by CVE-2017-1000485
-
cpe:2.3:a:nylas_mail_lives_project:nylas_mail:2.2.2