CVE-2023-5834
LOW3.8CVSS v3
—CVSS v2
0.08%
EPSS (exploit probability)
CWE-1386CWE
Description
HashiCorp Vagrant's Windows installer targeted a custom location with a non-protected path that could be junctioned, introducing potential for unauthorized file system writes. Fixed in Vagrant 2.4.0.
CVSS v3 vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N
Affected routers (0)
No routers currently mapped to this CVE in our database.