PT-2022-8892 · Google · Google-Cloudstorage-Commands
Published
2022-07-25
·
Updated
2022-07-31
·
CVE-2020-28436
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
google-cloudstorage-commands versions all
Description
A command injection issue affects the package.
Recommendations
For all versions, consider disabling the use of the google-cloudstorage-commands package until a fix is available or apply alternative mitigation measures as recommended by the vendor.
Exploit
Fix
Command Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Google-Cloudstorage-Commands