Vulnerabilities > Insecure Temporary File

DATE CVE VULNERABILITY TITLE RISK
2021-04-14 CVE-2021-25316 Insecure Temporary File vulnerability in Suse S390-Tools 2.1.018.29.1
A Insecure Temporary File vulnerability in s390-tools of SUSE Linux Enterprise Server 12-SP5, SUSE Linux Enterprise Server 15-SP2 allows local attackers to prevent VM live migrations This issue affects: SUSE Linux Enterprise Server 12-SP5 s390-tools versions prior to 2.1.0-18.29.1.
local
low complexity
suse CWE-377
3.3
2021-04-12 CVE-2021-29429 Insecure Temporary File vulnerability in multiple products
In Gradle before version 7.0, files created with open permissions in the system temporary directory can allow an attacker to access information downloaded by Gradle.
local
low complexity
gradle quarkus CWE-377
5.5
2021-02-25 CVE-2020-8032 Insecure Temporary File vulnerability in Opensuse Cyrus-Sasl
A Insecure Temporary File vulnerability in the packaging of cyrus-sasl of openSUSE Factory allows local attackers to escalate to root.
local
high complexity
opensuse CWE-377
7.0
2021-02-11 CVE-2020-8030 Insecure Temporary File vulnerability in Suse Caas Platform 4.5
A Insecure Temporary File vulnerability in skuba of SUSE CaaS Platform 4.5 allows local attackers to leak the bootstrapToken or modify the configuration file before it is processed, leading to arbitrary modifications of the machine/cluster.
local
low complexity
suse CWE-377
4.4
2021-02-11 CVE-2020-8027 Insecure Temporary File vulnerability in Opensuse Openldap2
A Insecure Temporary File vulnerability in openldap2 of SUSE Linux Enterprise Server 15-LTSS, SUSE Linux Enterprise Server for SAP 15; openSUSE Leap 15.1, openSUSE Leap 15.2 allows local attackers to overwrite arbitrary files and gain access to the openldap2 configuration This issue affects: SUSE Linux Enterprise Server 15-LTSS openldap2 versions prior to 2.4.46-9.37.1.
local
low complexity
opensuse CWE-377
6.6
2020-03-16 CVE-2020-1740 Insecure Temporary File vulnerability in multiple products
A flaw was found in Ansible Engine when using Ansible Vault for editing encrypted files.
local
high complexity
redhat debian fedoraproject CWE-377
4.7
2017-09-21 CVE-2017-7549 Insecure Temporary File vulnerability in Openstack Instack-Undercloud 5.3.0/6.1.0/7.2.0
A flaw was found in instack-undercloud 7.2.0 as packaged in Red Hat OpenStack Platform Pike, 6.1.0 as packaged in Red Hat OpenStack Platform Oacta, 5.3.0 as packaged in Red Hat OpenStack Newton, where pre-install and security policy scripts used insecure temporary files.
local
high complexity
openstack CWE-377
6.4