Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vv7f-8rp8-rq42

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

There are command injection vulnerabilities present in the AirWave application. Certain input fields controlled by an administrative user are not properly sanitized before being parsed by AirWave. If conditions are met, an attacker can obtain command execution on the host.

There are command injection vulnerabilities present in the AirWave application. Certain input fields controlled by an administrative user are not properly sanitized before being parsed by AirWave. If conditions are met, an attacker can obtain command execution on the host.

EPSS

Процентиль: 78%
0.01117
Низкий

Связанные уязвимости

CVSS3: 7.2
nvd
почти 6 лет назад

There are command injection vulnerabilities present in the AirWave application. Certain input fields controlled by an administrative user are not properly sanitized before being parsed by AirWave. If conditions are met, an attacker can obtain command execution on the host.

EPSS

Процентиль: 78%
0.01117
Низкий