CVE-2019-10807

CRITICAL9.8EPSS 0.58%

Improper Neutralization of Special Elements used in an OS Command in Blamer

發布日:2022/5/24修改日:2026/3/13

描述

Blamer versions prior to 1.0.1 allows execution of arbitrary commands. It is possible to inject arbitrary commands as part of the arguments provided to blamer.

受影響套件(1)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1CRITICAL9.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

參考連結(4)