Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7223-vjp5-rfjh

Опубликовано: 02 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A vulnerability allows attackers to download source code or an executable from a remote location and execute the code without sufficiently verifying the origin and integrity of the code. This vulnerability can allow attackers to modify the firmware before uploading it to the system, thus achieving the modification of the target’s integrity to achieve an insecure state.

A vulnerability allows attackers to download source code or an executable from a remote location and execute the code without sufficiently verifying the origin and integrity of the code. This vulnerability can allow attackers to modify the firmware before uploading it to the system, thus achieving the modification of the target’s integrity to achieve an insecure state.

EPSS

Процентиль: 33%
0.0013
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-494

Связанные уязвимости

CVSS3: 9.8
nvd
больше 1 года назад

A vulnerability allows attackers to download source code or an executable from a remote location and execute the code without sufficiently verifying the origin and integrity of the code. This vulnerability can allow attackers to modify the firmware before uploading it to the system, thus achieving the modification of the target’s integrity to achieve an insecure state.

EPSS

Процентиль: 33%
0.0013
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-494