PT-2023-30004 · Pcrs · Pcrs

Published

2023-10-26

·

Updated

2024-09-06

·

CVE-2023-46404

CVSS v3.1

9.9

Critical

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions PCRS versions prior to 3.11 (d0de1e)
Description The issue allows for remote code execution (RCE) by escaping Python sandboxing on the "Questions" page and the "Code editor" page.
Recommendations For versions prior to 3.11 (d0de1e), update to version 3.11 (d0de1e) or later to resolve the issue.

Exploit

Fix

Code Injection

Weakness Enumeration

Related Identifiers

CVE-2023-46404

Affected Products

Pcrs