Insufficient Input Validation in Bleach module in INTEL Distribution for Python versions prior to IDP 2018 Update 2 allows unprivileged user to bypass URI sanitization via local vector.
References
Link | Resource |
---|---|
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00129.html | Vendor Advisory |
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00129.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 04:05
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00129.html - Vendor Advisory |
Information
Published : 2018-08-01 15:29
Updated : 2024-11-21 04:05
NVD link : CVE-2018-3650
Mitre link : CVE-2018-3650
CVE.ORG link : CVE-2018-3650
JSON object : View
Products Affected
intel
- distribution_for_python
CWE
CWE-20
Improper Input Validation