Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v4x4-2fqj-xpmh

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Insecure method vulnerability in Awingsoft Awakening Winds3D Viewer plugin 3.5.0.0, 3.0.0.5, and possibly other versions allows remote attackers to force the download and execution of arbitrary files via the GetURL method.

Insecure method vulnerability in Awingsoft Awakening Winds3D Viewer plugin 3.5.0.0, 3.0.0.5, and possibly other versions allows remote attackers to force the download and execution of arbitrary files via the GetURL method.

EPSS

Процентиль: 90%
0.05336
Низкий

Дефекты

CWE-20

Связанные уязвимости

nvd
больше 16 лет назад

Insecure method vulnerability in Awingsoft Awakening Winds3D Viewer plugin 3.5.0.0, 3.0.0.5, and possibly other versions allows remote attackers to force the download and execution of arbitrary files via the GetURL method.

EPSS

Процентиль: 90%
0.05336
Низкий

Дефекты

CWE-20