Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-10768

Опубликовано: 07 нояб. 2019
Источник: redhat
CVSS3: 7.5

Описание

In AngularJS before 1.7.9 the function merge() could be tricked into adding or modifying properties of Object.prototype using a __proto__ payload.

A prototype pollution vulnerability was found in AngularJS. A remote attacker could abuse this flaw by providing malicious input to the merge() function by overriding or adding properties of the Object.prototype, allowing possible injection of code.

Отчет

Whilst servicemesh-grafana, and grafana-container both include a vulnerable version of angular.js (v1.6.6) the impact is lowered due to Grafana not directly implementing the angular.merge function. Quay does not contain the affected vulnerable code pattern.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
OpenShift Service Mesh 1servicemesh-grafanaNot affected
Red Hat AMQ Broker 7angularjsAffected
Red Hat CodeReady Studio 12angularjsNot affected
Red Hat Decision Manager 7angularOut of support scope
Red Hat Fuse 7angularjsAffected
Red Hat OpenShift Container Platform 3.11openshift3/grafanaFix deferred
Red Hat OpenShift Container Platform 4openshift4/ose-grafanaFix deferred
Red Hat Process Automation 7angularOut of support scope
Red Hat Quay 3quay/quay-rhel8Not affected
Red Hat AMQ 7.8.1FixedRHSA-2021:041704.02.2021

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-94
https://bugzilla.redhat.com/show_bug.cgi?id=1813309AngularJS: Prototype pollution in merge function could result in code injection

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 6 лет назад

In AngularJS before 1.7.9 the function `merge()` could be tricked into adding or modifying properties of `Object.prototype` using a `__proto__` payload.

CVSS3: 7.5
nvd
около 6 лет назад

In AngularJS before 1.7.9 the function `merge()` could be tricked into adding or modifying properties of `Object.prototype` using a `__proto__` payload.

CVSS3: 7.5
debian
около 6 лет назад

In AngularJS before 1.7.9 the function `merge()` could be tricked into ...

CVSS3: 7.5
github
около 6 лет назад

angular Prototype Pollution vulnerability

7.5 High

CVSS3