Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qfvm-vf5w-76fc

Опубликовано: 29 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 4.8
CVSS3: 5.3

Описание

A vulnerability, which was classified as critical, has been found in code-projects Product Management System 1.0. Affected by this issue is the function add_item. The manipulation of the argument st.productname leads to stack-based buffer overflow. An attack has to be approached locally. The exploit has been disclosed to the public and may be used.

A vulnerability, which was classified as critical, has been found in code-projects Product Management System 1.0. Affected by this issue is the function add_item. The manipulation of the argument st.productname leads to stack-based buffer overflow. An attack has to be approached locally. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 8%
0.0003
Низкий

4.8 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 5.3
nvd
9 месяцев назад

A vulnerability, which was classified as critical, has been found in code-projects Product Management System 1.0. Affected by this issue is the function add_item. The manipulation of the argument st.productname leads to stack-based buffer overflow. An attack has to be approached locally. The exploit has been disclosed to the public and may be used.

EPSS

Процентиль: 8%
0.0003
Низкий

4.8 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-119