CVE-2023-32184
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
19/09/2023
Last modified:
22/09/2023
Description
A Insecure Storage of Sensitive Information vulnerability in openSUSE opensuse-welcome allows local attackers to execute code as the user that runs opensuse-welcome if a custom layout is chosen<br />
This issue affects opensuse-welcome: from 0.1 before 0.1.9+git.35.4b9444a.<br />
<br />
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:opensuse:welcome:*:*:*:*:*:*:*:* | 0.1.0 (including) | 0.1.9\+git.35.4b9444a (excluding) |
To consult the complete list of CPE names with products and versions, see this page