Описание
Pydio 4.2.1 through 8.2.1 has an authenticated remote code execution vulnerability in which an attacker with administrator access to the web application can execute arbitrary code on the underlying system via Command Injection.
Ссылки
- PatchTechnical DescriptionThird Party Advisory
- PatchTechnical DescriptionThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 4.2.1 (включая) до 8.2.1 (включая)
cpe:2.3:a:pydio:pydio:*:*:*:*:*:*:*:*
EPSS
Процентиль: 97%
0.33819
Средний
7.2 High
CVSS3
9 Critical
CVSS2
Дефекты
CWE-78
Связанные уязвимости
CVSS3: 7.2
debian
больше 7 лет назад
Pydio 4.2.1 through 8.2.1 has an authenticated remote code execution v ...
CVSS3: 7.2
github
больше 3 лет назад
Pydio 4.2.1 through 8.2.1 has an authenticated remote code execution vulnerability in which an attacker with administrator access to the web application can execute arbitrary code on the underlying system via Command Injection.
EPSS
Процентиль: 97%
0.33819
Средний
7.2 High
CVSS3
9 Critical
CVSS2
Дефекты
CWE-78