Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-233w-5rfj-8hmj

Опубликовано: 04 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.5

Описание

myVesta is affected by an authenticated remote code execution vulnerability. Low privileged users can insert arbitrary commands as a part of the v_ftp_user parameter when deleting FTP usernames. This could result in the execution of commands as the admin user or takevoer of the admin user in myVesta.

myVesta is affected by an authenticated remote code execution vulnerability. Low privileged users can insert arbitrary commands as a part of the v_ftp_user parameter when deleting FTP usernames. This could result in the execution of commands as the admin user or takevoer of the admin user in myVesta.

EPSS

Процентиль: 47%
0.00656
Низкий

8.5 High

CVSS4

Дефекты

CWE-78

Связанные уязвимости

nvd
27 дней назад

myVesta is affected by an authenticated remote code execution vulnerability. Low privileged users can insert arbitrary commands as a part of the v_ftp_user parameter when deleting FTP usernames. This could result in the execution of commands as the admin user or takevoer of the admin user in myVesta.

EPSS

Процентиль: 47%
0.00656
Низкий

8.5 High

CVSS4

Дефекты

CWE-78