Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-15227

Опубликовано: 01 окт. 2020
Источник: debian
EPSS Критический

Описание

Nette versions before 2.0.19, 2.1.13, 2.2.10, 2.3.14, 2.4.16, 3.0.6 are vulnerable to an code injection attack by passing specially formed parameters to URL that may possibly leading to RCE. Nette is a PHP/Composer MVC Framework.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
php-netteremovedpackage

Примечания

  • https://github.com/nette/application/security/advisories/GHSA-8gv3-3j7f-wg94

EPSS

Процентиль: 100%
0.93793
Критический

Связанные уязвимости

CVSS3: 8.7
ubuntu
больше 5 лет назад

Nette versions before 2.0.19, 2.1.13, 2.2.10, 2.3.14, 2.4.16, 3.0.6 are vulnerable to an code injection attack by passing specially formed parameters to URL that may possibly leading to RCE. Nette is a PHP/Composer MVC Framework.

CVSS3: 8.7
nvd
больше 5 лет назад

Nette versions before 2.0.19, 2.1.13, 2.2.10, 2.3.14, 2.4.16, 3.0.6 are vulnerable to an code injection attack by passing specially formed parameters to URL that may possibly leading to RCE. Nette is a PHP/Composer MVC Framework.

CVSS3: 8.7
github
больше 5 лет назад

Potential Remote Code Execution vulnerability

EPSS

Процентиль: 100%
0.93793
Критический