Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hmhp-8p9w-m9g8

Опубликовано: 30 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Unified Remote 3.13.0 allows remote attackers to execute arbitrary Lua code because of a wildcarded Access-Control-Allow-Origin for the Remote upload endpoint.

Unified Remote 3.13.0 allows remote attackers to execute arbitrary Lua code because of a wildcarded Access-Control-Allow-Origin for the Remote upload endpoint.

EPSS

Процентиль: 71%
0.00666
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-611

Связанные уязвимости

CVSS3: 9.8
nvd
около 2 лет назад

Unified Remote 3.13.0 allows remote attackers to execute arbitrary Lua code because of a wildcarded Access-Control-Allow-Origin for the Remote upload endpoint.

EPSS

Процентиль: 71%
0.00666
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-611