← voltar
CVE-2024-48990highCWE-427

CVE-2024-48990

41Vexday Risk Score

Corrija em breve. Ela tem exploit funcional público.

ssvc Attendcvss 7.8epss 20%
da publicação à arma0 dias
Publicada no NVD19 de nov.
metasploit19 de nov.
probabilidade de exploração
20%top 3% das CVEs
exploração observada
nãonenhuma fonte reporta
Qualys discovered that needrestart, before version 3.8, allows local attackers to execute arbitrary code as root by tricking needrestart into running the Python interpreter with an attacker-controlled PYTHONPATH environment variable.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H