PT-2020-20986 · Unknown · Getcookies

Published

2020-09-01

·

Updated

2020-09-01

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions getcookies module (affected versions not specified)
Description The issue concerns a backdoor in the getcookies module, allowing a remote attacker to execute arbitrary commands on the system. This could potentially lead to unauthorized access and control.
Recommendations Uninstall the getcookies module if found used within an application. Evaluate your application to determine whether user data or systems were compromised after removing the installed module.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

GHSA-3CJV-4PHW-GVVV

Affected Products

Getcookies