cve/2013/CVE-2013-4116.md
2024-06-18 02:51:15 +02:00

681 B

CVE-2013-4116

Description

lib/npm.js in Node Packaged Modules (npm) before 1.3.3 allows local users to overwrite arbitrary files via a symlink attack on temporary files with predictable names that are created when unpacking archives.

POC

Reference

Github

No PoCs found on GitHub currently.