Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5m62-v4v4-45h6

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

GaussDB 200 with version of 6.5.1 have a command injection vulnerability. The software constructs part of a command using external input from users, but the software does not sufficiently validate the user input. Successful exploit could allow the attacker to inject certain commands.

GaussDB 200 with version of 6.5.1 have a command injection vulnerability. The software constructs part of a command using external input from users, but the software does not sufficiently validate the user input. Successful exploit could allow the attacker to inject certain commands.

EPSS

Процентиль: 68%
0.00582
Низкий

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 8.8
nvd
почти 6 лет назад

GaussDB 200 with version of 6.5.1 have a command injection vulnerability. The software constructs part of a command using external input from users, but the software does not sufficiently validate the user input. Successful exploit could allow the attacker to inject certain commands.

EPSS

Процентиль: 68%
0.00582
Низкий

Дефекты

CWE-74