Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7q95-85ph-5grx

Опубликовано: 12 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 8.6

Описание

Inadequate Encryption Strength vulnerability allow an authenticated attacker to execute arbitrary OS Commands via encrypted package upload.This issue affects Envoy: 4.x and 5.x

Inadequate Encryption Strength vulnerability allow an authenticated attacker to execute arbitrary OS Commands via encrypted package upload.This issue affects Envoy: 4.x and 5.x

EPSS

Процентиль: 12%
0.00041
Низкий

8.6 High

CVSS4

Дефекты

CWE-326

Связанные уязвимости

nvd
больше 1 года назад

Inadequate Encryption Strength vulnerability allow an authenticated attacker to execute arbitrary OS Commands via encrypted package upload.This issue affects Envoy: 4.x and 5.x

EPSS

Процентиль: 12%
0.00041
Низкий

8.6 High

CVSS4

Дефекты

CWE-326