← volver
CVE-2023-31465explotación observada

CVE-2023-31465

52Vexday Risk Score

Corrige ahora. Ella explotación observada por VulnCheck y tiene exploit funcional público.

ssvc Actepss 44%
de la publicación al arma
Publicada en NVD26 jul
VulnCheck+131d
probabilidad de explotación
44%top 1% de las CVE
explotación observada
VulnCheck
An issue was discovered in FSMLabs TimeKeeper 8.0.17 through 8.0.28. By intercepting requests from various timekeeper streams, it is possible to find the getsamplebacklog call. Some query parameters are passed directly in the URL and named arg[x], with x an integer starting from 1; it is possible to modify arg[2] to insert Bash code that will be executed directly by the server.
Productos afectados
n/a · n/a