Passhunt commit 54eb987d30ead2b8ebbf1f0b880aa14249323867 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.
References
Link | Resource |
---|---|
https://github.com/Viralmaniar/Passhunt/ | Product Third Party Advisory |
https://mirrors.neusoft.edu.cn/pypi/web/simple/request/ | Third Party Advisory |
https://github.com/Viralmaniar/Passhunt/issues/14 | Exploit Issue Tracking Third Party Advisory |
Configurations
Information
Published : 2022-12-14 07:15
Updated : 2022-12-16 12:45
NVD link : CVE-2022-46997
Mitre link : CVE-2022-46997
JSON object : View
CWE
Products Affected
passhunt_project
- passhunt