CVE

Id
64429  
CVE No.
CVE-2013-4482  
Status
Candidate  
Description
Untrusted search path vulnerability in python-paste-script (aka paster) in Luci 0.26.0, when started using the initscript, allows local users to gain privileges via a Trojan horse .egg-info file in the (1) current working directory or (2) its parent directories.  
Phase
Assigned (20130612)  
Votes
None (candidate not yet proposed)  
Comments