Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xx6m-m9v2-vc78

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Attackers can access the CGE account management function without privilege for permission elevation and execute arbitrary commands or files after obtaining user permissions.

Attackers can access the CGE account management function without privilege for permission elevation and execute arbitrary commands or files after obtaining user permissions.

EPSS

Процентиль: 50%
0.00266
Низкий

8.8 High

CVSS3

Дефекты

CWE-287
CWE-434

Связанные уязвимости

CVSS3: 8.8
nvd
почти 5 лет назад

Attackers can access the CGE account management function without privilege for permission elevation and execute arbitrary commands or files after obtaining user permissions.

EPSS

Процентиль: 50%
0.00266
Низкий

8.8 High

CVSS3

Дефекты

CWE-287
CWE-434