Логотип exploitDog
bind:CVE-2022-0749
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-0749

Количество 2

Количество 2

nvd логотип

CVE-2022-0749

больше 3 лет назад

This affects all versions of package SinGooCMS.Utility. The socket client in the package can pass in the payload via the user-controllable input after it has been established, because this socket client transmission does not have the appropriate restrictions or type bindings for the BinaryFormatter.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-29rv-fqx2-4c9f

больше 3 лет назад

Deserialization of Untrusted Data in SinGooCMS.Utility

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-0749

This affects all versions of package SinGooCMS.Utility. The socket client in the package can pass in the payload via the user-controllable input after it has been established, because this socket client transmission does not have the appropriate restrictions or type bindings for the BinaryFormatter.

CVSS3: 7.4
0%
Низкий
больше 3 лет назад
github логотип
GHSA-29rv-fqx2-4c9f

Deserialization of Untrusted Data in SinGooCMS.Utility

CVSS3: 9.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу