Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j7g8-4fhr-q3w3

Опубликовано: 30 нояб. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.4

Описание

An Improper Neutralization of Special Elements used in a command vulnerability in ESM prior to version 11.6.9 allows a remote administrator to execute arbitrary code as root on the ESM. This is possible as the input isn't correctly sanitized when adding a new data source.

An Improper Neutralization of Special Elements used in a command vulnerability in ESM prior to version 11.6.9 allows a remote administrator to execute arbitrary code as root on the ESM. This is possible as the input isn't correctly sanitized when adding a new data source.

EPSS

Процентиль: 70%
0.00639
Низкий

8.4 High

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 8.4
nvd
около 2 лет назад

An Improper Neutralization of Special Elements used in a command vulnerability in ESM prior to version 11.6.9 allows a remote administrator to execute arbitrary code as root on the ESM. This is possible as the input isn't correctly sanitized when adding a new data source.

EPSS

Процентиль: 70%
0.00639
Низкий

8.4 High

CVSS3

Дефекты

CWE-77