Beveiligingsadvies

CVE-2018-10917

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2018-08-15 17:00:00
Laatst bijgewerkt 2024-08-05 07:54:35
Toegewezen door redhat
CVSS-score 6.8
Status PUBLISHED

Beschrijving

pulp 2.16.x and possibly older is vulnerable to an improper path parsing. A malicious user or a malicious iso feed repository can write to locations accessible to the 'apache' user. This may lead to overwrite of published content on other iso repositories.