Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f8vh-3m24-38r6

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Multiple format string vulnerabilities in the python module in RRDtool, as used in Zenoss Core before 4.2.5 and other products, allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted third argument to the rrdtool.graph function, aka ZEN-15415, a related issue to CVE-2013-2131.

Multiple format string vulnerabilities in the python module in RRDtool, as used in Zenoss Core before 4.2.5 and other products, allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted third argument to the rrdtool.graph function, aka ZEN-15415, a related issue to CVE-2013-2131.

EPSS

Процентиль: 96%
0.22586
Средний

7.5 High

CVSS3

Дефекты

CWE-134

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 6 лет назад

Multiple format string vulnerabilities in the python module in RRDtool, as used in Zenoss Core before 4.2.5 and other products, allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted third argument to the rrdtool.graph function, aka ZEN-15415, a related issue to CVE-2013-2131.

CVSS3: 7.5
nvd
почти 6 лет назад

Multiple format string vulnerabilities in the python module in RRDtool, as used in Zenoss Core before 4.2.5 and other products, allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted third argument to the rrdtool.graph function, aka ZEN-15415, a related issue to CVE-2013-2131.

CVSS3: 7.5
debian
почти 6 лет назад

Multiple format string vulnerabilities in the python module in RRDtool ...

EPSS

Процентиль: 96%
0.22586
Средний

7.5 High

CVSS3

Дефекты

CWE-134