Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28944
HistoryJan 09, 2021 - 9:03 p.m.

Remote Code Execution (RCE)

2021-01-0921:03:05
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8
osc
remote code injection
downloaded packages
arbitrary files
software vulnerability

EPSS

0.019

Percentile

88.6%

osc is vulnerable to remote code injection. An attacker can change downloaded packages to overwrite arbitrary files.

EPSS

0.019

Percentile

88.6%