CWE-377

Insecure Temporary File

Parent: CWE-668 - Exposure of Resource to Wrong Sphere

Creating and using insecure temporary files can leave application and system data vulnerable to attack.

89 vulnerabilities with CWE-377
CVE-2021-46705 MEDIUM
grub2 <2.06-150400.7.1, <2.06-18.1 - Local File Truncation
CVSS 5.1
CVE-2021-20202 HIGH
Keycloak - Path Traversal
CVSS 7.3
CVE-2021-25316 LOW
SUSE Linux Enterprise Server <12-SP5, 15-SP2 - Local Privilege Esca...
CVSS 3.3
CVE-2021-29429 MEDIUM
Gradle < 7.0 - Information Disclosure
CVSS 4.0
CVE-2020-35451 MEDIUM
Apache Oozie < 5.2.1 - Race Condition
CVSS 4.7
CVE-2020-8032 MEDIUM
openSUSE Factory cyrus-sasl <2.1.27-4.2 - Local Privilege Escalation
CVSS 6.7
CVE-2020-8030 LOW
SUSE CaaS Platform 4.5 - Info Disclosure
CVSS 3.6
CVE-2020-8027 HIGH
openldap2 <2.4.46-9.37.1 - Info Disclosure
CVSS 7.3
CVE-2020-25636 MEDIUM
Ansible Base - Info Disclosure
CVSS 6.6
CVE-2020-10744 MEDIUM
Ansible Engine <2.7.18-2.9.9 - Privilege Escalation
CVSS 5.0
CVE-2020-2016 HIGH
Paloaltonetworks Pan-os < 7.1.26 - Race Condition
CVSS 7.0
CVE-2020-1994 MEDIUM
PAN-OS <8.1.13, <9.0.7 - Local Privilege Escalation
CVSS 4.1
CVE-2020-1991 HIGH
Palo Alto Networks Traps <5.0.8-6.1.4 - Privilege Escalation
CVSS 7.8
CVE-2020-1740 LOW
Ansible Engine - Info Disclosure
CVSS 3.9
CVE-2020-1981 HIGH
Paloaltonetworks Pan-os < 8.1.13 - Exposure to Wrong Actor
CVSS 7.0
CVE-2020-1733 MEDIUM
Ansible Engine <2.7.17, <2.8.9, <2.9.6 - Privilege Escalation
CVSS 5.0
CVE-2018-25068 MEDIUM
devent globalpom-utils <4.5.0 - Insecure Temp File
CVSS 6.3
CVE-2018-16494 HIGH
Versa-networks Versa Operating System - Exposure to Wrong Actor
CVSS 8.8
CVE-2018-17955 LOW
Opensuse Yast2-multipath < 4.1.1 - Symlink Following
CVSS 2.2
CVE-2018-19640 MEDIUM
supportutils <3.1-5.7.1 - Privilege Escalation
CVSS 4.4
CVE-2018-19638 LOW
Supportutils <3.1-5.7.1 - Privilege Escalation
CVSS 2.2
CVE-2018-19637 LOW
Supportutils <3.1-5.7.1 - Info Disclosure
CVSS 2.8
CVE-2018-6706 HIGH
McAfee Agent <5.0.7 - Info Disclosure
CVSS 7.5
CVE-2018-6705 HIGH
Mcafee Agent < 5.0.6 - Privilege Escalation
CVSS 7.8
CVE-2018-6704 HIGH
Mcafee Agent < 5.0.6 - Privilege Escalation
CVSS 7.8
Details
Vulnerabilities 89