Описание
WebInterface in OctoBot before 0.4.4 allows remote code execution because Tentacles upload is mishandled.
Ссылки
- ExploitThird Party Advisory
- Third Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- Third Party AdvisoryVDB Entry
- Vendor Advisory
- ExploitThird Party Advisory
- Third Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- Third Party AdvisoryVDB Entry
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.4.4 (исключая)
cpe:2.3:a:octobot:octobot:*:*:*:*:*:*:*:*
EPSS
Процентиль: 98%
0.49539
Средний
9.8 Critical
CVSS3
Дефекты
CWE-434
Связанные уязвимости
EPSS
Процентиль: 98%
0.49539
Средний
9.8 Critical
CVSS3
Дефекты
CWE-434