Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-27637

Опубликовано: 12 янв. 2021
Источник: nvd
CVSS3: 9.8
CVSS2: 10
EPSS Низкий

Описание

The R programming language’s default package manager CRAN is affected by a path traversal vulnerability that can lead to server compromise. This vulnerability affects packages installed via the R CMD install cli command or the install.packages() function from the interpreter. Update to version 4.0.3

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:r-project:cran:*:*:*:*:*:*:*:*
Версия до 4.0.3 (исключая)

EPSS

Процентиль: 73%
0.00778
Низкий

9.8 Critical

CVSS3

10 Critical

CVSS2

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 5 лет назад

The R programming language’s default package manager CRAN is affected by a path traversal vulnerability that can lead to server compromise. This vulnerability affects packages installed via the R CMD install cli command or the install.packages() function from the interpreter. Update to version 4.0.3

CVSS3: 9.8
debian
около 5 лет назад

The R programming language\u2019s default package manager CRAN is affe ...

CVSS3: 9.8
github
больше 3 лет назад

The R programming language’s default package manager CRAN is affected by a path traversal vulnerability that can lead to server compromise. This vulnerability affects packages installed via the R CMD install cli command or the install.packages() function from the interpreter. Update to version 4.0.3

EPSS

Процентиль: 73%
0.00778
Низкий

9.8 Critical

CVSS3

10 Critical

CVSS2

Дефекты

CWE-22