
We found results for “”
WS-2018-0030
Good to know:

Date: March 20, 2018
Escape base directory name when building shell command in PHP_CodeSniffer through version 3.0.0
Language: PHP
Severity Score
Related Resources (4)
Severity Score
Weakness Type (CWE)
Code
CWE-17Top Fix

Upgrade Version
Upgrade to version phpui/hom-php - no_fix;o5/php_codesniffer - 3.0.1;squizlabs/php_codesniffer - dev-dependabot/github_actions/ramsey/composer-install-3;astinus/php_codesniffer - 3.0.0.1;mich-grodno/php_codesniffer - 3.0.1;phpcsstandards/php_codesniffer - dev-dependabot/github_actions/ramsey/composer-install-3;everton3x/hom-php - no_fix;gloryit/php_codesniffer - 3.0.1;litepubl/cms - v7.08
CVSS v3.1
Base Score: |
|
---|---|
Attack Vector (AV): | NETWORK |
Attack Complexity (AC): | LOW |
Privileges Required (PR): | NONE |
User Interaction (UI): | NONE |
Scope (S): | UNCHANGED |
Confidentiality (C): | LOW |
Integrity (I): | LOW |
Availability (A): | LOW |