3.6
CVE-2014-0177
- EPSS 0.14%
- Published 27.05.2014 14:55:10
- Last modified 12.04.2025 10:46:40
- Source secalert@redhat.com
- CVE-Watchlists
- Open
The am function in lib/hub/commands.rb in hub before 1.12.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary patch file.
| Type | Source | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.14% | 0.301 |
| Source | Base Score | Exploit Score | Impact Score | Vector string |
|---|---|---|---|---|
| nvd@nist.gov | 3.6 | 3.9 | 4.9 |
AV:L/AC:L/Au:N/C:N/I:P/A:P
|