cbcvebase.
CVE-2011-4328
published 2012-06-16

CVE-2011-4328: plugin/npapi/plugin.cpp in Gnash before 0.8.10 uses weak permissions (world readable) for cookie files with predictable names in /tmp, which allows local users…

PriorityP419medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
2.13%
79.8th percentile
plugin/npapi/plugin.cpp in Gnash before 0.8.10 uses weak permissions (world readable) for cookie files with predictable names in /tmp, which allows local users to obtain sensitive information.

Affected

5 ranges
VendorProductVersion rangeFixed in
gnugnash<= 0.8.9
gnugnash
gnugnash
gnugnash
gnugnash
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.