An issue in zuoxingdong lagom v.0.1.2 allows a local attacker to execute arbitrary code via the pickle_load function of the serialize.py file.
References
Link | Resource |
---|---|
https://github.com/bayuncao/vul-cve-10 |
Configurations
No configuration.
History
02 Aug 2024, 20:35
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-94 | |
Summary |
|
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.6 |
21 Mar 2024, 02:52
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-03-21 02:52
Updated : 2024-08-02 20:35
NVD link : CVE-2024-25359
Mitre link : CVE-2024-25359
CVE.ORG link : CVE-2024-25359
JSON object : View
Products Affected
No product.
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')