RSS   Vulnerabilities for 'Onlinejudge'   RSS

2018-09-02
 
CVE-2018-16367

CWE-284
 

 
In OnlineJudge 2.0, the sandbox has an incorrect access control vulnerability that can write a file anywhere. A user can write a directory listing to /tmp, and can leak file data with a #include.

 


Copyright 2024, cxsecurity.com

 

Back to Top