Описание
Applio is a voice conversion tool. Versions 3.2.8-bugfix and prior are vulnerable to arbitrary file write in train.py. This issue may lead to writing arbitrary files on the Applio server. It can also be used in conjunction with an unsafe deserialization to achieve remote code execution. As of time of publication, no known patches are available.
Ссылки
- Product
- Product
- Product
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 3.2.8-bugfix (включая)
cpe:2.3:a:applio:applio:*:*:*:*:*:*:*:*
EPSS
Процентиль: 84%
0.02137
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-22
EPSS
Процентиль: 84%
0.02137
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-22