Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
os._execvpe from os.py in Python 2.2.1 and earlier creates temporary files with predictable names, which could allow local users to execute arbitrary code via a symlink attack.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Python 安全漏洞
Vulnerability Description
Python是Python基金会的一套开源的、面向对象的程序设计语言。该语言具有可扩展、支持模块和包、支持多种平台等特点。 Python 2.2.1版本及之前版本存在安全漏洞。Python中的os.py模块os._execvpe函数在产生临时文件时,使用可预测临时文件名,而且没有对临时文件是否存在进行判断,本地攻击者可以利用这个漏洞以Python进程的权限在系统上执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A