Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-64vq-wgg6-6rp5

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Vignette StoryServer 5 and Vignette V/6 allows remote attackers to execute arbitrary TCL code via (1) an HTTP query or cookie which is processed in the NEEDS command, or (2) an HTTP Referrer that is processed in the VALID_PATHS command.

Vignette StoryServer 5 and Vignette V/6 allows remote attackers to execute arbitrary TCL code via (1) an HTTP query or cookie which is processed in the NEEDS command, or (2) an HTTP Referrer that is processed in the VALID_PATHS command.

EPSS

Процентиль: 75%
0.00886
Низкий

Связанные уязвимости

nvd
больше 22 лет назад

Vignette StoryServer 5 and Vignette V/6 allows remote attackers to execute arbitrary TCL code via (1) an HTTP query or cookie which is processed in the NEEDS command, or (2) an HTTP Referrer that is processed in the VALID_PATHS command.

EPSS

Процентиль: 75%
0.00886
Низкий