Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6g88-vr3v-76mf

Опубликовано: 20 нояб. 2019
Источник: github
Github: Прошло ревью
CVSS4: 9.3
CVSS3: 9.8

Описание

Eval injection in Supybot/Limnoria

Eval injection in the Math plugin of Limnoria (before 2019.11.09) and Supybot (through 2018-05-09) allows remote unprivileged attackers to disclose information or possibly have unspecified other impact via the calc and icalc IRC commands.

Пакеты

Наименование

limnoria

pip
Затронутые версииВерсия исправления

< 2019.11.09

2019.11.09

EPSS

Процентиль: 67%
0.00541
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 6 лет назад

Eval injection in the Math plugin of Limnoria (before 2019.11.09) and Supybot (through 2018-05-09) allows remote unprivileged attackers to disclose information or possibly have unspecified other impact via the calc and icalc IRC commands.

CVSS3: 9.8
nvd
около 6 лет назад

Eval injection in the Math plugin of Limnoria (before 2019.11.09) and Supybot (through 2018-05-09) allows remote unprivileged attackers to disclose information or possibly have unspecified other impact via the calc and icalc IRC commands.

CVSS3: 9.8
debian
около 6 лет назад

Eval injection in the Math plugin of Limnoria (before 2019.11.09) and ...

EPSS

Процентиль: 67%
0.00541
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-94