Activestate Activepython vulnerabilities
2 known vulnerabilities affecting activestate/activepython.
Total CVEs
2
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2012-5379P4HIGHCVSS 7.3PoCv3.2.2.32012-10-11
CVE-2012-5379 [HIGH] CVE-2012-5379: Untrusted search path vulnerability in the installation functionality in ActivePython 3.2.2.3, when
Untrusted search path vulnerability in the installation functionality in ActivePython 3.2.2.3, when installed in the top-level C:\ directory, might allow local users to gain privileges via a Trojan horse DLL in the C:\Python27 or C:\Python27\Scripts directory, which may be added to the PATH system environment variable by an administrator, as demonstrated by a Tr
nvd
CVE-2002-0131P4MEDIUMCVSS 5.0v2.12002-03-25
CVE-2002-0131 [MEDIUM] CVE-2002-0131: ActivePython ActiveX control for Python in the AXScript package, when used in Internet Explorer, doe
ActivePython ActiveX control for Python in the AXScript package, when used in Internet Explorer, does not prevent a script from reading files from the client's filesystem, which allows remote attackers to read arbitrary files via a malicious web page containing Python script.
nvd