CVE-2015-1197
LOW 1.9EPSS 2.9%
cpio 2.11, when using the --no-absolute-filenames option, allows local users to write to arbitrary files via a symlink attack on a file in an archive.
- CVSS v2.0
- 1.9 LOW
AV:L/AC:M/Au:N/C:N/I:P/A:N - EPSS
- 2.91% chance of exploitation in the next 30 days, 86th percentile
- Published
- 2015-02-19
- Updated
- 2024-08-06