VULNERABILITY INTELLIGENCE
CVE-2016-1202
CVSS score7.8 HIGH
EPSS probability0.43%
CISA KEVNot currently listed
Published2016-04-25
Last modified2026-06-17
CVSS vectorCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Description
Untrusted search path vulnerability in Atom Electron before 0.33.5 allows local users to gain privileges via a Trojan horse Node.js module in a parent directory of a directory named on a require line.
Primary references
- vultures@jpcert.or.jp — Vendor Advisory
- vultures@jpcert.or.jp — Vendor Advisory
- vultures@jpcert.or.jp
- vultures@jpcert.or.jp
- af854a3a-2127-422b-91ae-364da2661108 — Vendor Advisory
- af854a3a-2127-422b-91ae-364da2661108 — Vendor Advisory
- af854a3a-2127-422b-91ae-364da2661108
- af854a3a-2127-422b-91ae-364da2661108