Записи devcert project
2 опубликованных записей вендора devcert project.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 100 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-1333 Inefficient Regular Expression Complexity1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
2 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2020-8186Эксплойта нет | A command injection vulnerability in the `devcert` module may lead to remote code execution when users of the module pass untrusted input todevcert project · devcert · CWE-77 | Критическая9,8 | — | 2,8 % | 10 июл. 2020 г. |
30Наблюдать | CVE-2022-1929Эксплойта нет | Exponential ReDoS in devcertdevcert project · devcert · CWE-1333 | Высокая7,5 | — | 0,6 % | 2 июн. 2022 г. |
- CVE-2020-818640В плане
A command injection vulnerability in the `devcert` module may lead to remote code execution when users of the module pass untrusted input to
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %devcert project · devcert10 июл. 2020 г.
- CVE-2022-192930Наблюдать
Exponential ReDoS in devcert
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %devcert project · devcert2 июн. 2022 г.