Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-22q2-gf4f-hvw6

Опубликовано: 10 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 5.8

Описание

CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could cause command injection in BLMon that is executed in the operating system console when in a SSH session.

CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could cause command injection in BLMon that is executed in the operating system console when in a SSH session.

EPSS

Процентиль: 40%
0.00503
Низкий

5.8 Medium

CVSS4

Дефекты

CWE-78

Связанные уязвимости

nvd
10 месяцев назад

CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could cause command injection in BLMon that is executed in the operating system console when in a SSH session.

CVSS3: 6.6
fstec
10 месяцев назад

Уязвимость консоли BLMon Console платформы управления общественными распределительными и передающими сетями Schneider Electric Saitel DR RTU, позволяющая нарушителю выполнить произвольные команды

EPSS

Процентиль: 40%
0.00503
Низкий

5.8 Medium

CVSS4

Дефекты

CWE-78