Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:19452
HistoryMay 16, 2019 - 3:10 a.m.

Remote Code Execution (RCE)

2019-05-1603:10:58
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
4

0.012 Low

EPSS

Percentile

85.4%

redhat-certification is vulnerable to remote code execution (RCE) attacks. This is because redhat-certification does not properly sanitize paths in rhcertStore.py:__saveResultsFile. A remote attacker could use this flaw to overwrite any file.

0.012 Low

EPSS

Percentile

85.4%