Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g39c-3xf9-vjph

Опубликовано: 29 янв. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

A CWE-20: Improper Input Validation vulnerability exists that could cause arbitrary code execution when the user visits a page containing the injected payload. This CVE is unique from CVE-2021-22826. Affected Product: EcoStruxure? Power Monitoring Expert 9.0 and prior versions

A CWE-20: Improper Input Validation vulnerability exists that could cause arbitrary code execution when the user visits a page containing the injected payload. This CVE is unique from CVE-2021-22826. Affected Product: EcoStruxure? Power Monitoring Expert 9.0 and prior versions

EPSS

Процентиль: 72%
0.00724
Низкий

8.8 High

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 8.8
nvd
около 4 лет назад

A CWE-20: Improper Input Validation vulnerability exists that could cause arbitrary code execution when the user visits a page containing the injected payload. This CVE is unique from CVE-2021-22826. Affected Product: EcoStruxure� Power Monitoring Expert 9.0 and prior versions

EPSS

Процентиль: 72%
0.00724
Низкий

8.8 High

CVSS3

Дефекты

CWE-20