Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2jfw-8cwj-3579

Опубликовано: 29 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

In RaspAP raspap-webgui 3.0.9 and earlier, a command injection vulnerability exists in the clearlog.php script. The vulnerability is due to improper sanitization of user input passed via the logfile parameter.

In RaspAP raspap-webgui 3.0.9 and earlier, a command injection vulnerability exists in the clearlog.php script. The vulnerability is due to improper sanitization of user input passed via the logfile parameter.

EPSS

Процентиль: 69%
0.0061
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 9.8
nvd
около 1 года назад

In RaspAP raspap-webgui 3.0.9 and earlier, a command injection vulnerability exists in the clearlog.php script. The vulnerability is due to improper sanitization of user input passed via the logfile parameter.

EPSS

Процентиль: 69%
0.0061
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-94