Code Injection in GitHub repository nilsteampassnet/teampass prior to 3.0.9.
References
Link | Resource |
---|---|
https://github.com/nilsteampassnet/teampass/commit/1f51482a0c4d152ca876844212b0f8f3cb9387af | Patch |
https://huntr.dev/bounties/d7b8ea75-c74a-4721-89bb-12e5c80fb0ba | Exploit Patch Third Party Advisory |
Configurations
History
30 May 2023, 17:11
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
CPE | cpe:2.3:a:teampass:teampass:*:*:*:*:*:*:*:* | |
References | (CONFIRM) https://huntr.dev/bounties/d7b8ea75-c74a-4721-89bb-12e5c80fb0ba - Exploit, Patch, Third Party Advisory | |
References | (MISC) https://github.com/nilsteampassnet/teampass/commit/1f51482a0c4d152ca876844212b0f8f3cb9387af - Patch |
24 May 2023, 09:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-05-24 08:15
Updated : 2024-02-04 23:37
NVD link : CVE-2023-2859
Mitre link : CVE-2023-2859
CVE.ORG link : CVE-2023-2859
JSON object : View
Products Affected
teampass
- teampass
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')