Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qmvv-qv49-vc54

Опубликовано: 25 нояб. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Remote code execution vulnerability due to insufficient verification of URLs, etc. in OndiskPlayerAgent. A remote attacker could exploit the vulnerability to cause remote code execution by causing an arbitrary user to download and execute malicious code.

Remote code execution vulnerability due to insufficient verification of URLs, etc. in OndiskPlayerAgent. A remote attacker could exploit the vulnerability to cause remote code execution by causing an arbitrary user to download and execute malicious code.

EPSS

Процентиль: 32%
0.00126
Низкий

7.8 High

CVSS3

Дефекты

CWE-345

Связанные уязвимости

CVSS3: 7.8
nvd
около 3 лет назад

Remote code execution vulnerability due to insufficient verification of URLs, etc. in OndiskPlayerAgent. A remote attacker could exploit the vulnerability to cause remote code execution by causing an arbitrary user to download and execute malicious code.

EPSS

Процентиль: 32%
0.00126
Низкий

7.8 High

CVSS3

Дефекты

CWE-345