Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hp9v-7xg7-mgwf

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An input validation flaw in the Symantec Security Analytics web UI 7.2 prior 7.2.7, 8.1, prior to 8.1.3-NSR3, 8.2, prior to 8.2.1-NSR2 or 8.2.2 allows a remote, unauthenticated attacker to execute arbitrary OS commands on the target with elevated privileges.

An input validation flaw in the Symantec Security Analytics web UI 7.2 prior 7.2.7, 8.1, prior to 8.1.3-NSR3, 8.2, prior to 8.2.1-NSR2 or 8.2.2 allows a remote, unauthenticated attacker to execute arbitrary OS commands on the target with elevated privileges.

EPSS

Процентиль: 81%
0.016
Низкий

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 9.8
nvd
почти 5 лет назад

An input validation flaw in the Symantec Security Analytics web UI 7.2 prior 7.2.7, 8.1, prior to 8.1.3-NSR3, 8.2, prior to 8.2.1-NSR2 or 8.2.2 allows a remote, unauthenticated attacker to execute arbitrary OS commands on the target with elevated privileges.

EPSS

Процентиль: 81%
0.016
Низкий

Дефекты

CWE-78