Описание
Calibre Web and Autocaliweb have OS Command Injection vulnerability
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Calibre Web, Autocaliweb allows Blind OS Command Injection. This issue affects Calibre Web: 0.6.24 (Nicolette); Autocaliweb: from 0.7.0 before 0.7.1.
Пакеты
Наименование
calibreweb
pip
Затронутые версииВерсия исправления
<= 0.6.24
Отсутствует
Связанные уязвимости
CVSS3: 9.8
nvd
7 месяцев назад
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Calibre Web, Autocaliweb allows Blind OS Command Injection.This issue affects Calibre Web: 0.6.24 (Nicolette); Autocaliweb: from 0.7.0 before 0.7.1.
CVSS3: 9.8
debian
7 месяцев назад
Improper Neutralization of Special Elements used in an OS Command ('OS ...