8.8
CVSSv3

CVE-2020-15824

Published: 08/08/2020 Updated: 07/11/2023
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

In JetBrains Kotlin from 1.4-M1 to 1.4-RC (as Kotlin 1.3.7x is not affected by the issue. Fixed version is 1.4.0) there is a script-cache privilege escalation vulnerability due to kotlin-main-kts cached scripts in the system temp directory, which is shared by all users by default.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

jetbrains kotlin 1.4.0

oracle communications cloud native core policy 1.14.0

oracle banking extensibility workbench 14.2

oracle banking extensibility workbench 14.3

oracle banking extensibility workbench 14.5