CVE-2020-13452

In Gotenberg through 6.2.1, insecure permissions for tini (writable by user gotenberg) potentially allow an attacker to overwrite the file, which can lead to denial of service or code execution.
Configurations

Configuration 1 (hide)

cpe:2.3:a:thecodingmachine:gotenberg:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2021-01-07 22:15

Updated : 2024-02-28 18:08


NVD link : CVE-2020-13452

Mitre link : CVE-2020-13452

CVE.ORG link : CVE-2020-13452


JSON object : View

Products Affected

thecodingmachine

  • gotenberg
CWE
CWE-276

Incorrect Default Permissions