Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:34983
HistoryApr 06, 2022 - 6:36 a.m.

Symlink Attack

2022-04-0606:36:25
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
20

0.0005 Low

EPSS

Percentile

18.0%

github.com/beego/beego is vulnerable to symlink attack. Lack of sufficient check for the existence of files created allows an attacker to use MemProf and GetCPUProfile commands to trigger the symbolic link attack locally.

0.0005 Low

EPSS

Percentile

18.0%