{"id":"GHSA-6cpc-mj5c-m9rq","summary":"Arbitrary File Write in cli","details":"Affected versions of `cli` use predictable temporary file names. If an attacker can create a symbolic link at the location of one of these temporarly file names, the attacker can arbitrarily write to any file that the user which owns the `cli` process has permission to write to.\n\n\n## Proof of Concept\n\nBy creating Symbolic Links at the following locations, the target of the link can be written to.\n```\nlock_file = '/tmp/' + cli.app + '.pid',\nlog_file = '/tmp/' + cli.app + '.log';\n```\n\n\n## Recommendation\n\nUpdate to version 1.0.0 or later.","aliases":["CVE-2016-10538"],"modified":"2023-11-01T04:46:34.818232Z","published":"2019-02-18T23:40:03Z","database_specific":{"severity":"LOW","github_reviewed":true,"github_reviewed_at":"2020-06-16T21:18:53Z","nvd_published_at":null,"cwe_ids":["CWE-22"]},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2016-10538"},{"type":"WEB","url":"https://github.com/node-js-libs/cli/issues/81"},{"type":"WEB","url":"https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=809252"},{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-6cpc-mj5c-m9rq"},{"type":"WEB","url":"https://www.npmjs.com/advisories/95"}],"affected":[{"package":{"name":"cli","ecosystem":"npm","purl":"pkg:npm/cli"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"1.0.0"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2019/02/GHSA-6cpc-mj5c-m9rq/GHSA-6cpc-mj5c-m9rq.json"}}],"schema_version":"1.9.0"}