Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

0Xfabiof

Researcher fromCheckmarx
#15028of 53,632
17.9Total CVSS
Vulnerabilities · 2
High
1
Critical
1
PT-2021-17304
9.8
2021-02-10
Unknown · Samba-Client · CVE-2021-27185
Name of the Vulnerable Software and Affected Versions: samba-client versions prior to 4.0.0 Description: The issue allows command injection due to the use of `process.exec`. This is a problem in the samba-client package for Node.js. Recommendations: For versions prior to 4.0.0, update to version 4.0.0 or later to resolve the issue. As a temporary workaround, consider restricting the use of the `process.exec` function until a patch is available.
PT-2020-20300
8.1
2020-09-14
Dataiku · Dataiku Dss · CVE-2020-8817
**Name of the Vulnerable Software and Affected Versions** Dataiku DSS versions prior to 6.0.5 **Description** The issue allows attackers to gain write access to a project, enabling them to modify the `Created by` metadata. **Recommendations** For versions prior to 6.0.5, update to version 6.0.5 or later to resolve the issue.