VYPR

Pithos

by Pithos

CVEs (2)

  • CVE-2010-4817MedNov 13, 2019
    risk 0.36cvss 5.5epss 0.00

    pithos before 0.3.5 allows overwrite of arbitrary files via symlinks.

  • CVE-2011-1500Apr 13, 2011
    risk 0.00cvss epss 0.00

    PreferencesPithosDialog.py in Pithos 0.3.7 does not properly restrict permissions for the .config/pithos.ini file in a user's home directory, which allows local users to obtain Pandora credentials by reading this file.