Lucene search

K
osvGoogleOSV:GHSA-7XC5-GGPP-G249
HistoryApr 20, 2021 - 4:13 p.m.

pwntools Server-Side Template Injection (SSTI) vulnerability

2021-04-2016:13:24
Google
osv.dev
7
pwntools
server-side template injection
ssti
vulnerability
remote code execution
software

EPSS

0.033

Percentile

91.5%

This affects the package pwntools before 4.3.1. The shellcraft generator for affected versions of this module are vulnerable to Server-Side Template Injection (SSTI), which can lead to remote code execution.

EPSS

0.033

Percentile

91.5%

Related for OSV:GHSA-7XC5-GGPP-G249