Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
common/snapshots.py in Back In Time (aka backintime) 0.9.26 changes certain permissions to 0777 before deleting the files in an old backup snapshot, which allows local users to obtain sensitive information by reading these files, or interfere with backup integrity by modifying files that are shared across snapshots.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
le-web backintime common/snapshots.py 权限许可和访问控制漏洞
Vulnerability Description
Back In Time (又称backintime) 0.9.26版本的common/snapshots.py在删除一个旧的文件备份的抽点打印以前更改某些对0777文件的许可信息,这会允许本地用户通过读取这些文件获得敏感信息,或通过修改在抽点打印中共享的文件来影响文件备份的储存。
CVSS Information
N/A
Vulnerability Type
N/A