Описание
Druide Antidote through 9.5.1 on Windows and Linux allows remote code execution through the update mechanism by leveraging use of HTTP to download installation packages.
Ссылки
- ExploitThird Party AdvisoryVDB Entry
- ExploitMailing ListThird Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party AdvisoryVDB Entry
- ExploitMailing ListThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 5.1 (включая)
Одновременно
cpe:2.3:a:druide:antidote_9:*:*:*:*:*:*:*:*
Одно из
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
EPSS
Процентиль: 92%
0.0919
Низкий
8.1 High
CVSS3
9.3 Critical
CVSS2
Дефекты
CWE-319
Связанные уязвимости
CVSS3: 8.1
github
больше 3 лет назад
Druide Antidote through 9.5.1 on Windows and Linux allows remote code execution through the update mechanism by leveraging use of HTTP to download installation packages.
EPSS
Процентиль: 92%
0.0919
Низкий
8.1 High
CVSS3
9.3 Critical
CVSS2
Дефекты
CWE-319