Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xc2c-w3g3-gc65

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Commsy version 9.0.0 is vulnerable to XXE attacks in the configuration import functionality resulting in denial of service and possibly remote execution of code.

Commsy version 9.0.0 is vulnerable to XXE attacks in the configuration import functionality resulting in denial of service and possibly remote execution of code.

EPSS

Процентиль: 74%
0.00827
Низкий

8.8 High

CVSS3

Дефекты

CWE-611

Связанные уязвимости

CVSS3: 8.8
nvd
около 8 лет назад

Commsy version 9.0.0 is vulnerable to XXE attacks in the configuration import functionality resulting in denial of service and possibly remote execution of code.

EPSS

Процентиль: 74%
0.00827
Низкий

8.8 High

CVSS3

Дефекты

CWE-611