PT-2022-11597 · Unknown · Chbrown Rfc6902

Arjunshibu

·

Published

2022-12-15

·

Updated

2024-01-25

·

CVE-2021-4245

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions chbrown rfc6902 (affected versions not specified)
Description A problematic vulnerability has been found in chbrown rfc6902, affecting an unknown part of the file pointer.ts. The manipulation leads to improperly controlled modification of object prototype attributes, known as 'prototype pollution'. The exploit has been disclosed to the public and may be used.
Recommendations To fix this issue, it is recommended to apply a patch, specifically the one with the name c006ce9faa43d31edb34924f1df7b79c137096cf.

Exploit

Fix

Special Elements Injection

Prototype Pollution

Weakness Enumeration

Related Identifiers

CVE-2021-4245
GHSA-P495-JXH2-WRFG

Affected Products

Chbrown Rfc6902