Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6rc3-gvcg-6xch

Опубликовано: 23 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Insecure plugin update mechanism in tucan through 0.3.10 could allow remote attackers to perform man-in-the-middle attacks and execute arbitrary code ith the permissions of the user running tucan.

Insecure plugin update mechanism in tucan through 0.3.10 could allow remote attackers to perform man-in-the-middle attacks and execute arbitrary code ith the permissions of the user running tucan.

EPSS

Процентиль: 82%
0.02301
Низкий

Связанные уязвимости

CVSS3: 8.1
ubuntu
больше 6 лет назад

Insecure plugin update mechanism in tucan through 0.3.10 could allow remote attackers to perform man-in-the-middle attacks and execute arbitrary code ith the permissions of the user running tucan.

CVSS3: 8.1
nvd
больше 6 лет назад

Insecure plugin update mechanism in tucan through 0.3.10 could allow remote attackers to perform man-in-the-middle attacks and execute arbitrary code ith the permissions of the user running tucan.

CVSS3: 8.1
debian
больше 6 лет назад

Insecure plugin update mechanism in tucan through 0.3.10 could allow r ...

EPSS

Процентиль: 82%
0.02301
Низкий