Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:33788
HistoryJan 20, 2022 - 7:27 a.m.

Arbitrary Code Execution

2022-01-2007:27:51
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
17
ipython
vulnerability
code execution
cross-user
temporary files

EPSS

0.001

Percentile

29.4%

ipython is vulnerable to arbitrary code execution. The vulnerability exists because the library does not properly manage the cross-user temporary files, allowing an attacker to run code as another user by executing malicious untrusted files through the current working directory.