9.8
CVE-2017-20166
- EPSS 0.6%
- Veröffentlicht 10.01.2023 06:15:09
- Zuletzt bearbeitet 09.04.2025 18:15:42
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Ecto 2.2.0 lacks a certain protection mechanism associated with the interaction between is_nil and raise.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ecto Project ≫ Ecto Version2.2.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.6% | 0.689 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
CWE-754 Improper Check for Unusual or Exceptional Conditions
The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.