Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3435-jrhh-rq8g

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

USVN (aka User-friendly SVN) before 1.0.9 allows remote code execution via shell metacharacters in the number_start or number_end parameter to LastHundredRequest (aka lasthundredrequestAction) in the Timeline module. NOTE: this may overlap CVE-2020-25069.

USVN (aka User-friendly SVN) before 1.0.9 allows remote code execution via shell metacharacters in the number_start or number_end parameter to LastHundredRequest (aka lasthundredrequestAction) in the Timeline module. NOTE: this may overlap CVE-2020-25069.

EPSS

Процентиль: 90%
0.05844
Низкий

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 9.9
nvd
около 5 лет назад

USVN (aka User-friendly SVN) before 1.0.9 allows remote code execution via shell metacharacters in the number_start or number_end parameter to LastHundredRequest (aka lasthundredrequestAction) in the Timeline module. NOTE: this may overlap CVE-2020-25069.

EPSS

Процентиль: 90%
0.05844
Низкий

Дефекты

CWE-78