Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wpvh-7c2r-23rh

Опубликовано: 14 мая 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5

Описание

A low privileged remote attacker can use a command injection vulnerability in the API which performs

remote code execution as the user-app user due to improper input validation. The confidentiality is partly affected.

A low privileged remote attacker can use a command injection vulnerability in the API which performs

remote code execution as the user-app user due to improper input validation. The confidentiality is partly affected.

EPSS

Процентиль: 76%
0.00985
Низкий

5 Medium

CVSS3

Дефекты

CWE-20
CWE-77

Связанные уязвимости

CVSS3: 5
nvd
больше 1 года назад

A low privileged remote attacker can use a command injection vulnerability in the API which performs remote code execution as the user-app user due to improper input validation. The confidentiality is partly affected.

EPSS

Процентиль: 76%
0.00985
Низкий

5 Medium

CVSS3

Дефекты

CWE-20
CWE-77