CVE-2017-16127
9.8
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
The module pandora-doomsday infects other modules. It's since been unpublished from the registry.
Affected (1)
Products: Pandora Doomsday Project: Pandora Doomsday
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 0.0.1 |
Related CWEs
CWE-276
Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.
CWE-509
Replicating Malicious Code (Virus or Worm)
Replicating malicious code, including viruses and worms, will attempt to attack other systems once it has successfully compromised the target system or the product.
References (2)
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.