Описание
Deserialization of Untrusted Data in Torrentpier
Torrentpier version 2.4.1 allows executing arbitrary commands on the server.
This is possible because the application is vulnerable to insecure deserialization.
Пакеты
Наименование
torrentpier/torrentpier
composer
Затронутые версииВерсия исправления
<= 2.4.1
Отсутствует
Связанные уязвимости
CVSS3: 10
nvd
почти 2 года назад
Torrentpier version 2.4.1 allows executing arbitrary commands on the server. This is possible because the application is vulnerable to insecure deserialization.