We found results for “”
WS-2018-0030
Good to know:
Date: March 20, 2018
Escape base directory name when building shell command in PHP_CodeSniffer through version 3.0.0
Language: PHP
Severity Score
Related Resources (4)
Severity Score
Weakness Type (CWE)
Code
CWE-17Top Fix
Upgrade Version
Upgrade to version phpui/hom-php - no_fix;o5/php_codesniffer - 3.0.1;squizlabs/php_codesniffer - dev-dependabot/github_actions/ramsey/composer-install-3;astinus/php_codesniffer - 3.0.0.1;mich-grodno/php_codesniffer - 3.0.1;phpcsstandards/php_codesniffer - dev-dependabot/github_actions/ramsey/composer-install-3;everton3x/hom-php - no_fix;gloryit/php_codesniffer - 3.0.1;litepubl/cms - v7.08
CVSS v3.1
| Base Score: |
|
|---|---|
| Attack Vector (AV): | NETWORK |
| Attack Complexity (AC): | LOW |
| Privileges Required (PR): | NONE |
| User Interaction (UI): | NONE |
| Scope (S): | UNCHANGED |
| Confidentiality (C): | LOW |
| Integrity (I): | LOW |
| Availability (A): | LOW |
Vulnerabilities
Projects
Contact Us


