Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-14939

Опубликовано: 23 июн. 2020
Источник: nvd
CVSS3: 7.8
CVSS2: 6.8
EPSS Низкий

Описание

An issue was discovered in savestruct_internal.c in FreedroidRPG 1.0rc2. Saved game files are composed of Lua scripts that recover a game's state. A file can be modified to put any Lua code inside, leading to arbitrary code execution while loading.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:freedroid:freedroidrpg:1.0:rc2:*:*:*:*:*:*

EPSS

Процентиль: 58%
0.00363
Низкий

7.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 5 лет назад

An issue was discovered in savestruct_internal.c in FreedroidRPG 1.0rc2. Saved game files are composed of Lua scripts that recover a game's state. A file can be modified to put any Lua code inside, leading to arbitrary code execution while loading.

CVSS3: 7.8
debian
больше 5 лет назад

An issue was discovered in savestruct_internal.c in FreedroidRPG 1.0rc ...

github
больше 3 лет назад

An issue was discovered in savestruct_internal.c in FreedroidRPG 1.0rc2. Saved game files are composed of Lua scripts that recover a game's state. A file can be modified to put any Lua code inside, leading to arbitrary code execution while loading.

EPSS

Процентиль: 58%
0.00363
Низкий

7.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-20