Lucene search

K
osvGoogleOSV:PYSEC-2018-109
HistoryMar 13, 2018 - 3:29 p.m.

PYSEC-2018-109

2018-03-1315:29:00
Google
osv.dev
9

0.001 Low

EPSS

Percentile

21.4%

Ajenti version version 2 contains a Insecure Permissions vulnerability in Plugins download that can result in The download of any plugins as being a normal user. This attack appear to be exploitable via By knowing how the requisition is made, and sending it as a normal user, the server, in response, downloads the plugin.

0.001 Low

EPSS

Percentile

21.4%

Related for OSV:PYSEC-2018-109