Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qg5x-rr96-mrpg

Опубликовано: 18 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.3

Описание

The affected On-Premise cnMaestro is vulnerable inside a specific route where a user can upload a crafted package to the system. An attacker could abuse this user-controlled data to execute arbitrary commands on the server.

The affected On-Premise cnMaestro is vulnerable inside a specific route where a user can upload a crafted package to the system. An attacker could abuse this user-controlled data to execute arbitrary commands on the server.

EPSS

Процентиль: 27%
0.00096
Низкий

7.3 High

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 5
nvd
больше 3 лет назад

The affected On-Premise cnMaestro is vulnerable inside a specific route where a user can upload a crafted package to the system. An attacker could abuse this user-controlled data to execute arbitrary commands on the server.

EPSS

Процентиль: 27%
0.00096
Низкий

7.3 High

CVSS3

Дефекты

CWE-78