9.8
CVE-2022-34558
- EPSS 1.22%
- Veröffentlicht 28.07.2022 23:15:07
- Zuletzt bearbeitet 21.11.2024 07:09:45
- Erkennungen
WMAgent v1.3.3rc2 and 1.3.3rc1, reqmgr 2 1.4.1rc5 and 1.4.0rc2, reqmon 1.4.1rc5, and global-workqueue 1.4.1rc5 allows attackers to execute arbitrary code via a crafted dbs-client package.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Global-workqueue Project ≫ Global-workqueue Version 1.4.1 Update rc5 SwPlatform python
Reqmgr2 Project ≫ Reqmgr2 Version 1.4.0 Update rc2 SwPlatform python
Reqmgr2 Project ≫ Reqmgr2 Version 1.4.1 Update rc5 SwPlatform python
Reqmon Project ≫ Reqmon Version 1.4.1 Update rc5 SwPlatform python
Wmagent Project ≫ Wmagent Version 1.3.3 Update rc1 SwPlatform python
Wmagent Project ≫ Wmagent Version 1.3.3 Update rc2 SwPlatform python
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.22% | 0.661 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
https://github.com/dmwm/WMCore/issues/11188