Cheetah 0.9.15 and 0.9.16 searches the /tmp directory for modules before using the paths in the PYTHONPATH variable, which allows local users to execute arbitrary code via a malicious module in /tmp/.
Score: 1.8
Priority: P4 - Informational (Low)
Score: 0.00054
Percentile:
0.16919
CVSS v2 Score: 7.2
Severity: