Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-0481
HistoryFeb 24, 2023 - 6:15 p.m.

Design/Logic Flaw

2023-02-2418:15:00
PRIOn knowledge base
www.prio-n.com
7
resteasy
logic flaw
filebodyhandler
file creation
insecure permissions
local user

4 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

In RestEasy Reactive implementation of Quarkus the insecure File.createTempFile() is used in the FileBodyHandler class which creates temp files with insecure permissions that could be read by a local user.

CPENameOperatorVersion
quarkuslt2.16.1

4 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%