
We found results for “”
CVE-2022-25973
Date: August 10, 2022
All versions of package mc-kill-port are vulnerable to Arbitrary Command Execution via the kill function, due to missing sanitization of the port argument.
Severity Score
Severity Score
Weakness Type (CWE)
Improper Neutralization of Argument Delimiters in a Command ('Argument Injection')
CWE-88CVSS v3.1
Base Score: |
|
---|---|
Attack Vector (AV): | LOCAL |
Attack Complexity (AC): | LOW |
Privileges Required (PR): | LOW |
User Interaction (UI): | NONE |
Scope (S): | UNCHANGED |
Confidentiality (C): | HIGH |
Integrity (I): | HIGH |
Availability (A): | HIGH |