GHSA-75px-35p4-qq6h · Severity: critical · Ecosystem: pip — Aim External Control of File Name or Path vulnerability
A vulnerability in aimhubio/aim version 3.19.3 allows an attacker to exploit the `tarfile.extractall()` function to extract the contents of a maliciously crafted tarfile to arbitrary locations on the host server. The attacker can control `repo.path` and `run_hash` to bypass directory existence checks and extract files to unintended locations, potentially overwriting critical files. This can lead to arbitrary data being written to arbitrary locations on the remote tracking server, which could be used for further attacks such as writing a new SSH key to the target server.
Conclusion & alert: CVE-2024-6829 is rated Exploit Available (56.3/100): CVSS Critical severity, with low exploitation likelihood (EPSS 0.06%). Core evidence: 1 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
| EDB-ID | Source | Kind | Published | Link |
|---|---|---|---|---|
| — | nvd_ref | exploit_tag | Exploit-DB ↗ |
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2025-03-30 | 0.05% | 0.06% | +0.01% |
| 2 | 2025-03-29 | 0.05% | 0.05% | -0.01% |
| 3 | 2025-03-26 | — | 0.05% | — |
Full EPSS history (4 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 9.1 | 3.0 | CRITICAL |
|
3.9 | 5.2 | [email protected] |
GHSA-75px-35p4-qq6h · Severity: critical · Ecosystem: pip — Aim External Control of File Name or Path vulnerability
| URL | Tags |
|---|---|
| https://huntr.com/bounties/7c97065c-1b63-4982-82c1-8038be0ed570 | Exploit Third Party Advisory |