Описание
PCRS <= 3.11 (d0de1e) “Questions” page and “Code editor” page are vulnerable to remote code execution (RCE) by escaping Python sandboxing.
Ссылки
- Patch
- ExploitMitigationPatchThird Party Advisory
- Patch
- ExploitMitigationPatchThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 3.11 (включая)
cpe:2.3:a:utoronto:pcrs:*:*:*:*:*:*:*:*
EPSS
Процентиль: 97%
0.39599
Средний
9.9 Critical
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-94
Связанные уязвимости
CVSS3: 9.9
github
больше 2 лет назад
PCRS <= 3.11 (d0de1e) “Questions” page and “Code editor” page are vulnerable to remote code execution (RCE) by escaping Python sandboxing.
EPSS
Процентиль: 97%
0.39599
Средний
9.9 Critical
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-94