Insufficient Input Validation in Bleach module in INTEL Distribution for Python versions prior to IDP 2018 Update 2 allows unprivileged user to bypass URI sanitization via local vector.
References
Link | Resource |
---|---|
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00129.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2018-08-01 08:29
Updated : 2018-11-19 11:39
NVD link : CVE-2018-3650
Mitre link : CVE-2018-3650
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
intel
- distribution_for_python