Lucene search

K
prionPRIOn knowledge basePRION:CVE-2019-10778
HistoryJan 08, 2020 - 4:15 p.m.

Command injection

2020-01-0816:15:00
PRIOn knowledge base
www.prio-n.com
2

9.9 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

73.4%

devcert-sanscache before 0.4.7 allows remote attackers to execute arbitrary code or cause a Command Injection via the exec function. The variable commonName controlled by user input is used as part of the exec function without any sanitization.

CPENameOperatorVersion
devcert-sanscachelt0.4.7

9.9 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

73.4%