3.6
CVSSv2

CVE-2020-10236

Published: 09/03/2020 Updated: 09/03/2020
CVSS v2 Base Score: 3.6 | Impact Score: 4.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.1 | Impact Score: 4.2 | Exploitability Score: 1.8
VMScore: 320
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:P

Vulnerability Summary

An issue exists in Froxlor prior to 0.10.14. It created files with static names in /tmp during installation if the installation directory was not writable. This allowed local malicious users to cause DoS or disclose information out of the config files, because of _createUserdataConf in install/lib/class.FroxlorInstall.php.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

froxlor froxlor