Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:27671
HistoryOct 26, 2020 - 2:41 a.m.

Privilege Escalation

2020-10-2602:41:02
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

0.001 Low

EPSS

Percentile

31.0%

jetty is vulnerable to privilege escalation. The vulnerability exists on Unix like systems where the system’s temporary directory is shared between all users on that system, allowing a user to observe the process of creating a temporary sub-directory in the shared temporary directory, and race to complete the creation of the temporary subdirectory to get read and write permission to the subdirectory.

References