Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-39173

Опубликовано: 18 июл. 2024
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

calculator-boilerplate v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the eval function at /routes/calculator.js. This vulnerability allows attackers to execute arbitrary code via a crafted payload injected into the input field.

EPSS

Процентиль: 86%
0.02884
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-95

Связанные уязвимости

CVSS3: 9.8
github
больше 1 года назад

calculator-boilerplate v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the eval function at /routes/calculator.js. This vulnerability allows attackers to execute arbitrary code via a crafted payload injected into the input field.

EPSS

Процентиль: 86%
0.02884
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-95