Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qx5r-97f3-qmfh

Опубликовано: 12 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_nas utility. An authenticated attacker could potentially exploit this vulnerability, escaping the restricted shell and execute arbitrary operating system commands with root privileges.

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_nas utility. An authenticated attacker could potentially exploit this vulnerability, escaping the restricted shell and execute arbitrary operating system commands with root privileges.

EPSS

Процентиль: 44%
0.00218
Низкий

7.8 High

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 7.8
nvd
почти 2 года назад

Dell Unity, versions prior to 5.4, contains an OS Command Injection Vulnerability in its svc_nas utility. An authenticated attacker could potentially exploit this vulnerability, escaping the restricted shell and execute arbitrary operating system commands with root privileges.

CVSS3: 7.8
fstec
почти 2 года назад

Уязвимость утилиты svc_nas операционной среды для управления и обеспечения работы хранилища данных Dell Unity Operating Environment, позволяющая нарушителю выполнить произвольную команду с привилегиями root

EPSS

Процентиль: 44%
0.00218
Низкий

7.8 High

CVSS3

Дефекты

CWE-78