Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ppwj-j5xp-6rmh

Опубликовано: 26 янв. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the FAS key entry in the configuration file, allowing attackers that have direct or indirect access to this file to execute arbitrary OS commands.

An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the FAS key entry in the configuration file, allowing attackers that have direct or indirect access to this file to execute arbitrary OS commands.

EPSS

Процентиль: 47%
0.00241
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 2 лет назад

An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the FAS key entry in the configuration file, allowing attackers that have direct or indirect access to this file to execute arbitrary OS commands.

CVSS3: 9.8
nvd
около 2 лет назад

An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the FAS key entry in the configuration file, allowing attackers that have direct or indirect access to this file to execute arbitrary OS commands.

CVSS3: 9.8
debian
около 2 лет назад

An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize ...

EPSS

Процентиль: 47%
0.00241
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-78