01642 06 11 11 Arrange Call

Vulnerability: Insecure Swap File Creation in VIM

CVE-2017-1000382 · LOW

CVE-2017-1000382

VIM version 8.0.1187 (and other versions most likely) ignores umask when creating a swap file ("[ORIGINAL_FILENAME].swp") resulting in files that may be world readable or otherwise accessible in ways not intended by the user running the vi binary.

Learn more about our User Device Pen Test.