Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fgmm-f4rh-2m84

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Inkdrop versions prior to v5.3.1 allows an attacker to execute arbitrary OS commands on the system where it runs by loading a file or code snippet containing an invalid iframe into Inkdrop.

Inkdrop versions prior to v5.3.1 allows an attacker to execute arbitrary OS commands on the system where it runs by loading a file or code snippet containing an invalid iframe into Inkdrop.

EPSS

Процентиль: 48%
0.00247
Низкий

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 7.8
nvd
больше 4 лет назад

Inkdrop versions prior to v5.3.1 allows an attacker to execute arbitrary OS commands on the system where it runs by loading a file or code snippet containing an invalid iframe into Inkdrop.

EPSS

Процентиль: 48%
0.00247
Низкий

Дефекты

CWE-78