CVE-2023-5834

LOW
3.8CVSS v3
CVSS v2
0.08% EPSS (exploit probability)
CWE-1386CWE

Description

HashiCorp Vagrant's Windows installer targeted a custom location with a non-protected path that could be junctioned, introducing potential for unauthorized file system writes. Fixed in Vagrant 2.4.0.

CVSS v3 vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N

Affected routers (0)

No routers currently mapped to this CVE in our database.

External references