Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qjg4-p6j3-36x6

Опубликовано: 04 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 9.2
CVSS3: 9.8

Описание

Improper Control of Generation of Code ('Code Injection') vulnerability in BG-TEK Informatics Security Technologies CoslatV3 allows Command Injection.This issue affects CoslatV3: through 3.1069.

NOTE: The vendor was contacted and it was learned that the product is not supported.

Improper Control of Generation of Code ('Code Injection') vulnerability in BG-TEK Informatics Security Technologies CoslatV3 allows Command Injection.This issue affects CoslatV3: through 3.1069.

NOTE: The vendor was contacted and it was learned that the product is not supported.

EPSS

Процентиль: 74%
0.00848
Низкий

9.2 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-77
CWE-94

Связанные уязвимости

CVSS3: 9.8
nvd
больше 1 года назад

Improper Control of Generation of Code ('Code Injection'), Improper Neutralization of Special Elements used in a Command ('Command Injection'), Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in BG-TEK Informatics Security Technologies CoslatV3 allows Command Injection, Privilege Escalation.This issue affects CoslatV3: through 3.1069. NOTE: The vendor was contacted and it was learned that the product is not supported.

EPSS

Процентиль: 74%
0.00848
Низкий

9.2 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-77
CWE-94