Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24263
HistoryApr 10, 2020 - 12:50 a.m.

Arbitrary Files Overwrite

2020-04-1000:50:38
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

EPSS

0

Percentile

5.1%

The Simple Protocol for Independent Computing Environments (SPICE) is vulnerable to Arbitrary Files Overwrite. It was found that the SPICE Firefox plug-in used a predictable name for its log file. A local attacker could use this flaw to conduct a symbolic link attack, allowing them to overwrite arbitrary files accessible to the user running Firefox.

EPSS

0

Percentile

5.1%