Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p95x-pv3h-fh38

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

The Qpid server on Red Hat Satellite 6 does not properly restrict message types, which allows remote authenticated users with administrative access on a managed content host to execute arbitrary code via a crafted message, related to a pickle processing problem in pulp.

The Qpid server on Red Hat Satellite 6 does not properly restrict message types, which allows remote authenticated users with administrative access on a managed content host to execute arbitrary code via a crafted message, related to a pickle processing problem in pulp.

EPSS

Процентиль: 82%
0.01696
Низкий

7.2 High

CVSS3

Дефекты

CWE-502

Связанные уязвимости

redhat
больше 10 лет назад

The Qpid server on Red Hat Satellite 6 does not properly restrict message types, which allows remote authenticated users with administrative access on a managed content host to execute arbitrary code via a crafted message, related to a pickle processing problem in pulp.

CVSS3: 7.2
nvd
больше 8 лет назад

The Qpid server on Red Hat Satellite 6 does not properly restrict message types, which allows remote authenticated users with administrative access on a managed content host to execute arbitrary code via a crafted message, related to a pickle processing problem in pulp.

EPSS

Процентиль: 82%
0.01696
Низкий

7.2 High

CVSS3

Дефекты

CWE-502