Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vjjq-q5v7-9wmx

Опубликовано: 09 дек. 2021
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

A privilege escalation vulnerability exists in the Remote Server functionality of Dream Report ODS Remote Connector 20.2.16900.0. A specially-crafted command injection can lead to elevated capabilities. An attacker can provide a malicious file to trigger this vulnerability.

A privilege escalation vulnerability exists in the Remote Server functionality of Dream Report ODS Remote Connector 20.2.16900.0. A specially-crafted command injection can lead to elevated capabilities. An attacker can provide a malicious file to trigger this vulnerability.

EPSS

Процентиль: 69%
0.00613
Низкий

8.8 High

CVSS3

Дефекты

CWE-276
CWE-434

Связанные уязвимости

CVSS3: 7.3
nvd
около 4 лет назад

A privilege escalation vulnerability exists in the Remote Server functionality of Dream Report ODS Remote Connector 20.2.16900.0. A specially-crafted command injection can lead to elevated capabilities. An attacker can provide a malicious file to trigger this vulnerability.

EPSS

Процентиль: 69%
0.00613
Низкий

8.8 High

CVSS3

Дефекты

CWE-276
CWE-434