A vulnerability was found in gitlearn. It has been declared as problematic. This vulnerability affects the function getGrade/getOutOf of the file scripts/config.sh of the component Escape Sequence Handler. The manipulation leads to injection. The attack can be initiated remotely. The name of the patch is 3faa5deaa509012069afe75cd03c21bda5050a64. It is recommended to apply a patch to fix this issue. VDB-218302 is the identifier assigned to this vulnerability.
References
Link | Resource |
---|---|
https://vuldb.com/?ctiid.218302 | Third Party Advisory |
https://github.com/mikeizbicki/gitlearn/pull/31 | Exploit Patch Third Party Advisory |
https://vuldb.com/?id.218302 | Third Party Advisory |
https://github.com/mikeizbicki/gitlearn/commit/3faa5deaa509012069afe75cd03c21bda5050a64 | Patch Third Party Advisory |
Configurations
Information
Published : 2023-01-13 12:15
Updated : 2023-01-23 10:00
NVD link : CVE-2015-10040
Mitre link : CVE-2015-10040
JSON object : View
CWE
CWE-116
Improper Encoding or Escaping of Output
Products Affected
gitlearn_project
- gitlearn