Unknown · Masscan.Py · CVE-2018-16951
**Name of the Vulnerable Software and Affected Versions**
xunfeng version 0.2.0
**Description**
The issue allows command execution via CSRF due to masscan.py mishandling backquote characters.
**Recommendations**
For xunfeng version 0.2.0, consider restricting access to the masscan.py script to minimize the risk of exploitation until a patch is available.