Vulnerabilities
Vulnerable Software
Python Software Foundation:  Security Vulnerabilities
Tools/faqwiz/move-faqwiz.sh (aka the generic FAQ wizard moving tool) in Python 2.4.5 might allow local users to overwrite arbitrary files via a symlink attack on a tmp$RANDOM.tmp temporary file. NOTE: there may not be common usage scenarios in which tmp$RANDOM.tmp is located in an untrusted directory.
CVSS Score
7.2
EPSS Score
0.0
Published
2008-09-18
common.py in Paramiko 1.7.1 and earlier, when using threads or forked processes, does not properly use RandomPool, which allows one session to obtain sensitive information from another session by predicting the state of the pool.
CVSS Score
4.3
EPSS Score
0.012
Published
2008-01-16
Stack-based buffer overflow in the file_compress function in minigzip (Modules/zlib) in Python 2.5 allows context-dependent attackers to execute arbitrary code via a long file argument.
CVSS Score
7.5
EPSS Score
0.049
Published
2007-03-24


Contact Us

Shodan ® - All rights reserved