node-openssl project kayıtları
node-openssl project üreticisine ait 2 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-506 Embedded Malicious Code1
- CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
2 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2023-49210İstismar yok | The openssl (aka node-openssl) NPM package through 2.0.0 was characterized as "a nonsense wrapper with no real purpose" by its author, and anode-openssl project · node-openssl · CWE-77 | Kritik9,8 | — | %1,9 | 23 Kas 2023 |
30İzleyin | CVE-2017-16064İstismar yok | node-openssl was a malicious module published with the intent to hijack environment variables.node-openssl project · node-openssl · CWE-506 | Yüksek7,5 | — | %1,2 | 6 Haz 2018 |
- CVE-2023-4921040Planlayın
The openssl (aka node-openssl) NPM package through 2.0.0 was characterized as "a nonsense wrapper with no real purpose" by its author, and a
KritikCVSS 9,8İstismar yokEPSS %2node-openssl project · node-openssl23 Kas 2023
- CVE-2017-1606430İzleyin
node-openssl was a malicious module published with the intent to hijack environment variables.
YüksekCVSS 7,5İstismar yokEPSS %1node-openssl project · node-openssl6 Haz 2018