Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36317
HistoryJul 11, 2022 - 4:23 p.m.

Remote Code Execution

2022-07-1116:23:05
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.001 Low

EPSS

Percentile

24.1%

snipe/snipe-it is vulnerable to remote code execution. The vulnerability exists in the Select User function under the People Menu component which allows an attacker with admin privileges to inject remote code to a user via maliciously crafted pdf files.

0.001 Low

EPSS

Percentile

24.1%

Related for VERACODE:36317