CVE-2020-13452

In Gotenberg through 6.2.1, insecure permissions for tini (writable by user gotenberg) potentially allow an attacker to overwrite the file, which can lead to denial of service or code execution.
Configurations

Configuration 1

cpe:2.3:a:thecodingmachine:gotenberg:*:*:*:*:*:*:*:*

Information

Published : 2021-01-07 10:15

Updated : 2021-01-08 07:02


NVD link : CVE-2020-13452

Mitre link : CVE-2020-13452

Products Affected
No products.
CWE
CWE-276

Incorrect Default Permissions