Code injection vulnerability in blamer 1.0.0 and earlier may result in remote code execution when the input can be controlled by an attacker.
References
Link | Resource |
---|---|
https://hackerone.com/reports/772448 | Exploit Patch Third Party Advisory |
Configurations
Information
Published : 2020-03-20 12:15
Updated : 2020-03-25 06:49
NVD link : CVE-2020-8137
Mitre link : CVE-2020-8137
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
blamer_project
- blamer