Lucene search

K
wolfiWolfiWOLFI:CVE-2024-35242
HistorySep 30, 2024 - 3:53 a.m.

CVE-2024-35242 vulnerabilities

2024-09-3003:53:08
packages.wolfi.dev
58
cve-2024-35242
vulnerabilities
composer
unix
packages

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

AI Score

7.2

Confidence

Low

EPSS

0

Percentile

15.5%

Vulnerabilities for packages: composer

OSVersionArchitecturePackageVersionFilename
Wolfiunknownx86_64composer<= 2.7.7-r0composer-2.7.7-r0.apk
Wolfiunknownaarch64composer<= 2.7.7-r0composer-2.7.7-r0.apk

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

AI Score

7.2

Confidence

Low

EPSS

0

Percentile

15.5%