cbcvebase.
CVE-2009-0316
published 2009-01-28

CVE-2009-0316: Untrusted search path vulnerability in src/if_python.c in the Python interface in Vim before 7.2.045 allows local users to execute arbitrary code via a Trojan…

PriorityP425medium6.9CVSS 2.0
AVLACMAuNCCICAC
EPSS
2.84%
85.2th percentile
Untrusted search path vulnerability in src/if_python.c in the Python interface in Vim before 7.2.045 allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-5983), as demonstrated by an erroneous search path for plugin/bike.vim in bicyclerepair.

Affected

26 ranges· showing 25
VendorProductVersion rangeFixed in
debianvim< vim 2:7.2.025-2 (bookworm)vim 2:7.2.025-2 (bookworm)
vimvim<= 7.2
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim
vimvim>= 0 < 2:7.2.025-22:7.2.025-2
vimvim>= 0 < 2:7.2.025-22:7.2.025-2
vimvim>= 0 < 2:7.2.025-22:7.2.025-2

CVSS provenance

nvdv2.06.9MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
osv6.9MEDIUM
vendor_debian6.9LOW
vendor_redhat6.9MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.