Описание
A code injection vulnerability in the wxExecute() function of OpenCPN v5.12.0 allows attackers to execute arbitrary code via embedding shell metacharacters.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| opencpn | not-affected | package |
Примечания
https://jihoo-portfolio.vercel.app/posts/opencpn-rce-command-injection
EPSS
Процентиль: 6%
0.00165
Низкий
Связанные уязвимости
CVSS3: 7.8
ubuntu
3 месяца назад
A code injection vulnerability in the wxExecute() function of OpenCPN v5.12.0 allows attackers to execute arbitrary code via embedding shell metacharacters.
CVSS3: 7.8
nvd
3 месяца назад
A code injection vulnerability in the wxExecute() function of OpenCPN v5.12.0 allows attackers to execute arbitrary code via embedding shell metacharacters.
CVSS3: 7.8
github
3 месяца назад
A code injection vulnerability in the wxExecute() function of OpenCPN v5.12.0 allows attackers to execute arbitrary code via embedding shell metacharacters.
EPSS
Процентиль: 6%
0.00165
Низкий