Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p3wp-9777-5gw9

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Prodder before 0.5, and perlpodder before 0.5, allows remote attackers to execute arbitrary code via shell metacharacters in the URL of a podcast (url attribute of an enclosure tag, or $enc_url variable), which is executed when running wget.

Prodder before 0.5, and perlpodder before 0.5, allows remote attackers to execute arbitrary code via shell metacharacters in the URL of a podcast (url attribute of an enclosure tag, or $enc_url variable), which is executed when running wget.

EPSS

Процентиль: 97%
0.3315
Средний

Дефекты

CWE-94

Связанные уязвимости

nvd
больше 19 лет назад

Prodder before 0.5, and perlpodder before 0.5, allows remote attackers to execute arbitrary code via shell metacharacters in the URL of a podcast (url attribute of an enclosure tag, or $enc_url variable), which is executed when running wget.

EPSS

Процентиль: 97%
0.3315
Средний

Дефекты

CWE-94