Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:34986
HistoryApr 06, 2022 - 8:36 a.m.

Symlink Attack

2022-04-0608:36:28
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

0.0005 Low

EPSS

Percentile

18.0%

github.com/beego/beego is vulnerable to symlink attack. Lack of sufficient check for the existence of files created allows an attacker to use MemProf command to trigger the symbolic link attack locally.

0.0005 Low

EPSS

Percentile

18.0%