Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rpgf-wx3x-j576

Опубликовано: 26 мар. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Gradle Enterprise before 2022.1 allows remote code execution if the installation process did not specify an initial configuration file. The configuration allows certain anonymous access to administration and an API.

Gradle Enterprise before 2022.1 allows remote code execution if the installation process did not specify an initial configuration file. The configuration allows certain anonymous access to administration and an API.

EPSS

Процентиль: 84%
0.02148
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-668

Связанные уязвимости

CVSS3: 9.8
nvd
почти 4 года назад

Gradle Enterprise before 2022.1 allows remote code execution if the installation process did not specify an initial configuration file. The configuration allows certain anonymous access to administration and an API.

EPSS

Процентиль: 84%
0.02148
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-668