Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mm4v-hxm2-mccj

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Huawei FusionCompute versions 6.5.1 and 8.0.0 have a command injection vulnerability. An authenticated, remote attacker can craft specific request to exploit this vulnerability. Due to insufficient verification, this could be exploited to cause the attackers to obtain higher privilege.

Huawei FusionCompute versions 6.5.1 and 8.0.0 have a command injection vulnerability. An authenticated, remote attacker can craft specific request to exploit this vulnerability. Due to insufficient verification, this could be exploited to cause the attackers to obtain higher privilege.

EPSS

Процентиль: 80%
0.01468
Низкий

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 7.2
nvd
около 5 лет назад

Huawei FusionCompute versions 6.5.1 and 8.0.0 have a command injection vulnerability. An authenticated, remote attacker can craft specific request to exploit this vulnerability. Due to insufficient verification, this could be exploited to cause the attackers to obtain higher privilege.

EPSS

Процентиль: 80%
0.01468
Низкий

Дефекты

CWE-77