PT-2019-17858 · Power Egg · Power Egg

Touma Hatano

·

Publicado

2019-02-13

·

Atualizado

2020-09-10

·

CVE-2019-5916

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions POWER EGG versions 2.0.1 through 2.9 Patch 4
Description The issue allows remote attackers to execute EL expression on the server via unspecified vectors. This is due to an input validation problem.
Recommendations For versions 2.0.1 through 2.9 Patch 4, at the moment, there is no information about a newer version that contains a fix for this issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-5916

Produtos afetados

Power Egg