Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q87m-52r8-4jpp

Опубликовано: 24 мар. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Okta Advanced Server Access Client for Linux and macOS prior to version 1.58.0 was found to be vulnerable to command injection via a specially crafted URL. An attacker, who has knowledge of a valid team name for the victim and also knows a valid target host where the user has access, can execute commands on the local system.

Okta Advanced Server Access Client for Linux and macOS prior to version 1.58.0 was found to be vulnerable to command injection via a specially crafted URL. An attacker, who has knowledge of a valid team name for the victim and also knows a valid target host where the user has access, can execute commands on the local system.

EPSS

Процентиль: 61%
0.00415
Низкий

8.8 High

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 8.8
nvd
почти 4 года назад

Okta Advanced Server Access Client for Linux and macOS prior to version 1.58.0 was found to be vulnerable to command injection via a specially crafted URL. An attacker, who has knowledge of a valid team name for the victim and also knows a valid target host where the user has access, can execute commands on the local system.

EPSS

Процентиль: 61%
0.00415
Низкий

8.8 High

CVSS3

Дефекты

CWE-77