An attacker can bypass the sandboxing of Nasal scripts and arbitrarily write to any file path that the user has permission to modify at the operating-system level.
2025-01-28T17:15:25.947
2025-08-06T19:25:13.783
Analyzed
CVSSv3.1: 8.6 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | flightgear | simgear | ≤ 2020.3.19 | Yes |
Operating System | debian | debian_linux | 11.0 | Yes |