Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jr6c-jc92-gv6c

Опубликовано: 07 фев. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

In Config Manager, there is a possible command injection due to improper input validation. This could lead to remote escalation of privilege from a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A20210009; Issue ID: OSBNB00123234.

In Config Manager, there is a possible command injection due to improper input validation. This could lead to remote escalation of privilege from a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A20210009; Issue ID: OSBNB00123234.

EPSS

Процентиль: 85%
0.02568
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-20
CWE-77

Связанные уязвимости

CVSS3: 9.8
nvd
около 3 лет назад

In Config Manager, there is a possible command injection due to improper input validation. This could lead to remote escalation of privilege from a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A20210009; Issue ID: OSBNB00123234.

EPSS

Процентиль: 85%
0.02568
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-20
CWE-77