Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xm72-wm3m-qgm7

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Improper neutralization of special elements used in an OS command in Druva inSync Windows Client 6.5.0 allows a local, unauthenticated attacker to execute arbitrary operating system commands with SYSTEM privileges.

Improper neutralization of special elements used in an OS command in Druva inSync Windows Client 6.5.0 allows a local, unauthenticated attacker to execute arbitrary operating system commands with SYSTEM privileges.

EPSS

Процентиль: 95%
0.16557
Средний

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 7.8
nvd
почти 6 лет назад

Improper neutralization of special elements used in an OS command in Druva inSync Windows Client 6.5.0 allows a local, unauthenticated attacker to execute arbitrary operating system commands with SYSTEM privileges.

EPSS

Процентиль: 95%
0.16557
Средний

Дефекты

CWE-78