{"id":"GSD-2021-1000003","summary":"CWE-379 in fabric-sdk-rest version All released versions (project is now archived)","details":"In Hyperledger fabric-sdk-rest version All released versions (project is now archived) a CWE-379 exists in the packages/fabric-rest/fabric-rest-server script that can be attacked via Local resulting in File overwrite from a privileged user.","modified":"2023-03-14T07:04:18.322483Z","published":"2021-05-31T15:39:45.031586Z","withdrawn":"2023-03-14T07:04:18.322483Z","references":[{"type":"WEB","url":"https://github.com/hyperledger-archives/fabric-sdk-rest/blob/master/packages/fabric-rest/fabric-rest-server"},{"type":"WEB","url":"https://jira.hyperledger.org/browse/FABR-10"}],"schema_version":"1.7.3"}