Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22597
HistoryFeb 28, 2020 - 6:58 a.m.

World Readable File

2020-02-2806:58:46
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
20

0.001 Low

EPSS

Percentile

32.1%

ansible is vulnerable to world readable file. When the function atomic_move is invoked for moving files without a mode, it leads to a file creattion with default 0666 permissions if the destination file does not exists, creating world readable files depending on the default umask as well as the permissions on the destination directory.