One Article Review

Accueil - L'article:
Source CVE.webp CVE Liste
Identifiant 8319894
Date de publication 2023-03-20 05:15:11 (vue: 2023-03-20 11:06:51)
Titre CVE-2015-10096
Texte A vulnerability, which was classified as critical, was found in Zarthus IRC Twitter Announcer Bot up to 1.1.0. This affects the function get_tweets of the file lib/twitterbot/plugins/twitter_announcer.rb. The manipulation of the argument tweet leads to command injection. It is possible to initiate the attack remotely. Upgrading to version 1.1.1 is able to address this issue. The name of the patch is 6b1941b7fc2c70e1f40981b43c84a2c20cc12bd3. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-223383.
Envoyé Oui
Condensat 10096 2015 223383 6b1941b7fc2c70e1f40981b43c84a2c20cc12bd3 able address affected affects announcer argument associated attack bot classified command component critical cve file found function get identifier initiate injection irc issue leads lib/twitterbot/plugins/twitter manipulation name patch possible recommended remotely tweet tweets twitter upgrade upgrading vdb version vulnerability which zarthus
Tags Vulnerability Guideline
Stories
Notes
Move


L'article ne semble pas avoir été repris aprés sa publication.


L'article ne semble pas avoir été repris sur un précédent.
My email: