VDB
CVE-2020-7778
CVE-2020-7778
PUBLISHED
CVSS 7.300000190734863 HIGH
OS Command Injection in systeminformation
EPSS 1.10% · 78.4th percentile
Risk Scores
CVSS v3.1
7.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:P/RL:O
EPSS Score
1.10%
78.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | systeminformation | * |
| systeminformation | systeminformation | 0 |
| npm | systeminformation | 0 |
Timeline
- Nov 26, 2020 CVE Published
- Dec 1, 2020 CVE Updated
- Apr 14, 2021 EPSS Score
- Jun 22, 2021 EPSS Score
- Oct 25, 2021 EPSS Score
- Dec 27, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Feb 27, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 1, 2022 EPSS Score
- Jul 2, 2022 EPSS Score
- Nov 5, 2022 EPSS Score
References
- https://github.com/sebhildebrandt/systeminformation/blob/master/lib/internet.js url
- https://snyk.io/vuln/SNYK-JS-SYSTEMINFORMATION-1043753 url
- https://gist.github.com/EffectRenan/b434438938eed0b21b376cedf5c81e80 url
- https://github.com/sebhildebrandt/systeminformation/commit/73dce8d717ca9c3b7b0d0688254b8213b957f0fa%23diff-970ae648187190f86bafc8f193b7538200eba164fad0674428b6487582c089cc url
- https://github.com/sebhildebrandt/systeminformation/commit/11103a447ab9550c25f1fbec7e6d903720b3fea8%23diff-970ae648187190f86bafc8f193b7538200eba164fad0674428b6487582c089cc url
- https://nvd.nist.gov/vuln/detail/CVE-2020-7778 advisory
- https://www.ibm.com/support/pages/node/6410882 advisory