CVE-2019-10783

All versions including 0.0.4 of lsof npm module are vulnerable to Command Injection. Every exported method used by the package uses the exec function to parse user input.
References
Link Resource
https://snyk.io/vuln/SNYK-JS-LSOF-543632 Exploit Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:isof_project:isof:*:*:*:*:*:node.js:*:*

Information

Published : 2020-01-29 14:15

Updated : 2020-08-24 10:37


NVD link : CVE-2019-10783

Mitre link : CVE-2019-10783


JSON object : View

CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

Advertisement

dedicated server usa

Products Affected

isof_project

  • isof