Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a symlink attack and overwrite arbitrary files.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
xcfa 竞争条件问题漏洞
Vulnerability Description
xcfa是一款用于提取音频CD并将音乐文件转换为flac、wav、mp3等格式文件的工具。 xcfa 5.0.1之前版本中存在安全漏洞。本地攻击者可利用该漏洞实施符号链接攻击并覆盖任意文件。
CVSS Information
N/A
Vulnerability Type
N/A