Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cxcg-p8cj-fv7w

Опубликовано: 12 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_cava utility. An authenticated attacker could potentially exploit this vulnerability, escaping the restricted shell and execute arbitrary operating system commands with root privileges.

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_cava utility. An authenticated attacker could potentially exploit this vulnerability, escaping the restricted shell and execute arbitrary operating system commands with root privileges.

EPSS

Процентиль: 53%
0.00304
Низкий

7.8 High

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 7.8
nvd
почти 2 года назад

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_cava utility. An authenticated attacker could potentially exploit this vulnerability, escaping the restricted shell and execute arbitrary operating system commands with root privileges.

CVSS3: 7.8
fstec
почти 2 года назад

Уязвимость утилиты svc_cava операционной среды для управления и обеспечения работы хранилища данных Dell Unity Operating Environment, позволяющая нарушителю выполнить произвольную команду

EPSS

Процентиль: 53%
0.00304
Низкий

7.8 High

CVSS3

Дефекты

CWE-78