Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22239
HistoryDec 31, 2019 - 4:51 a.m.

OS Command Injection

2019-12-3104:51:40
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

EPSS

0.005

Percentile

75.7%

mikehaertl/php-shellcommand is vulnerable to OS command injection. The addArg() function in src/Command.php does not escape all arguments, allowing an attacker to inject arbitrary OS commands.

EPSS

0.005

Percentile

75.7%