9.8

CVE-2022-35411

Exploit
rpc.py through 0.6.0 allows Remote Code Execution because an unpickle occurs when the "serializer: pickle" HTTP header is sent. In other words, although JSON (not Pickle) is the default data format, an unauthenticated client can cause the data to be processed with unpickle.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Rpc.Py ProjectRpc.Py Version >= 0.4.2 <= 0.6.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 45.86% 0.986
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
CWE-522 Insufficiently Protected Credentials

The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.

http://packetstormsecurity.com/files/167872/rpc.py-0.6.0-Remote-Code-Execution.html
Third Party Advisory
Exploit
VDB Entry
https://github.com/abersheeran/rpc.py/commit/491e7a841ed9a754796d6ab047a9fb16e23bf8bd
Patch
Third Party Advisory
https://github.com/ehtec/rpcpy-exploit
Third Party Advisory
Exploit
https://medium.com/%40elias.hohl/remote-code-execution-0-day-in-rpc-py-709c76690c30
Exploit