PT-2020-21564 · Socket.Io · Socket.Io
Published
2020-09-01
·
Updated
2020-09-01
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
soket.io versions (affected versions not specified)
Description
The
soket.io package is malicious, designed to exploit typographical errors when installing modules. Upon execution, it contacts a Command and Control server to execute arbitrary commands.Recommendations
Revoke and rotate all credentials found on the compromised machine.
Completely erase the affected machine and reinstall the Operating System.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Socket.Io