Логотип exploitDog
bind:CVE-2023-49314
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-49314

Количество 2

Количество 2

nvd логотип

CVE-2023-49314

около 2 лет назад

Asana Desktop 2.1.0 on macOS allows code injection because of specific Electron Fuses. There is inadequate protection against code injection through settings such as RunAsNode and EnableNodeCliInspectArguments, and thus r3ggi/electroniz3r can be used to perform an attack.

CVSS3: 7.8
EPSS: Средний
github логотип

GHSA-3ghj-wv9w-7vp9

около 2 лет назад

Asana Desktop 2.1.0 on macOS allows code injection because of specific Electron Fuses. There is inadequate protection against code injection through settings such as RunAsNode and EnableNodeCliInspectArguments, and thus r3ggi/electroniz3r can be used to perform an attack.

CVSS3: 9.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-49314

Asana Desktop 2.1.0 on macOS allows code injection because of specific Electron Fuses. There is inadequate protection against code injection through settings such as RunAsNode and EnableNodeCliInspectArguments, and thus r3ggi/electroniz3r can be used to perform an attack.

CVSS3: 7.8
22%
Средний
около 2 лет назад
github логотип
GHSA-3ghj-wv9w-7vp9

Asana Desktop 2.1.0 on macOS allows code injection because of specific Electron Fuses. There is inadequate protection against code injection through settings such as RunAsNode and EnableNodeCliInspectArguments, and thus r3ggi/electroniz3r can be used to perform an attack.

CVSS3: 9.8
22%
Средний
около 2 лет назад

Уязвимостей на страницу