Логотип exploitDog
bind:CVE-2019-25022
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-25022

Количество 2

Количество 2

nvd логотип

CVE-2019-25022

почти 5 лет назад

An issue was discovered in Scytl sVote 2.1. An attacker can inject code that gets executed by creating an election-event and injecting a payload over an event alias, because the application calls Runtime.getRuntime().exec() without validation.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-r8r8-mhhg-vjch

больше 3 лет назад

An issue was discovered in Scytl sVote 2.1. An attacker can inject code that gets executed by creating an election-event and injecting a payload over an event alias, because the application calls Runtime.getRuntime().exec() without validation.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-25022

An issue was discovered in Scytl sVote 2.1. An attacker can inject code that gets executed by creating an election-event and injecting a payload over an event alias, because the application calls Runtime.getRuntime().exec() without validation.

CVSS3: 9.8
0%
Низкий
почти 5 лет назад
github логотип
GHSA-r8r8-mhhg-vjch

An issue was discovered in Scytl sVote 2.1. An attacker can inject code that gets executed by creating an election-event and injecting a payload over an event alias, because the application calls Runtime.getRuntime().exec() without validation.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу