VYPR
Vendor

Tardiff Project

Products
1
CVEs
2
Across products
2
Status
Private

Products

1

Recent CVEs

2
  • CVE-2015-0857CriMay 6, 2016
    risk 0.64cvss 9.8epss 0.03

    Cool Projects TarDiff allows remote attackers to execute arbitrary commands via shell metacharacters in the name of a (1) tar file or (2) file within a tar file.

  • CVE-2015-0858LowMay 6, 2016
    risk 0.21cvss 3.3epss 0.00

    Cool Projects TarDiff allows local users to write to arbitrary files via a symlink attack on a pathname in a /tmp/tardiff-$$ temporary directory.