Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-28282

Опубликовано: 29 дек. 2020
Источник: debian

Описание

Prototype pollution vulnerability in 'getobject' version 0.1.0 allows an attacker to cause a denial of service and may lead to remote code execution.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
node-getobjectfixed1.0.2-1package
node-getobjectfixed0.1.0-2+deb11u1bullseyepackage
node-getobjectfixed0.1.0-2+deb10u1busterpackage
node-getobjectend-of-lifestretchpackage

Примечания

  • https://github.com/cowboy/node-getobject/commit/84071748fa407caa8f824e0d0b9c1cde9ec56633 (v1.0.0)

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 5 лет назад

Prototype pollution vulnerability in 'getobject' version 0.1.0 allows an attacker to cause a denial of service and may lead to remote code execution.

CVSS3: 9.8
redhat
около 5 лет назад

Prototype pollution vulnerability in 'getobject' version 0.1.0 allows an attacker to cause a denial of service and may lead to remote code execution.

CVSS3: 9.8
nvd
около 5 лет назад

Prototype pollution vulnerability in 'getobject' version 0.1.0 allows an attacker to cause a denial of service and may lead to remote code execution.

CVSS3: 9.8
github
больше 4 лет назад

Prototype pollution in getobject