Vulnerabilities (CVE)

Filtered by vendor Qduoj Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-16367 1 Qduoj 1 Onlinejudge 2024-02-28 9.0 HIGH 9.9 CRITICAL
In OnlineJudge 2.0, the sandbox has an incorrect access control vulnerability that can write a file anywhere. A user can write a directory listing to /tmp, and can leak file data with a #include.