An issue in the /api/audits component of Pwndoc v0.5.3 allows attackers to escalate privileges and execute arbitrary code via uploading a crafted audit file.
References
Link | Resource |
---|---|
https://github.com/pwndoc/pwndoc | Product |
https://github.com/pwndoc/pwndoc/issues/401 | Exploit Issue Tracking Third Party Advisory |
Configurations
Information
Published : 2022-12-05 12:15
Updated : 2022-12-06 12:12
NVD link : CVE-2022-45771
Mitre link : CVE-2022-45771
JSON object : View
CWE
Products Affected
pwndoc_project
- pwndoc