Lucene search

K
prionPRIOn knowledge basePRION:CVE-2020-26301
HistorySep 20, 2021 - 8:15 p.m.

Command injection

2021-09-2020:15:00
PRIOn knowledge base
www.prio-n.com
4

9.9 High

AI Score

Confidence

High

0.04 Low

EPSS

Percentile

92.0%

ssh2 is client and server modules written in pure JavaScript for node.js. In ssh2 before version 1.4.0 there is a command injection vulnerability. The issue only exists on Windows. This issue may lead to remote code execution if a client of the library calls the vulnerable method with untrusted input. This is fixed in version 1.4.0.

CPENameOperatorVersion
ssh2lt1.4.0

9.9 High

AI Score

Confidence

High

0.04 Low

EPSS

Percentile

92.0%

Related for PRION:CVE-2020-26301