CVE-2020-29582

MEDIUM5.3EPSS 0.00%

Incorrect Default Permissions in JetBrains Kotlin

發布日:2022/5/24修改日:2026/5/10
也稱為:DEBIAN-CVE-2020-29582

描述

In JetBrains Kotlin before 1.4.21, a vulnerable Java API was used for temporary file and folder creation. An attacker was able to read data from such files and list directories due to insecure permissions.

受影響套件(2)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1MEDIUM5.3CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

參考連結(8)