CX-2021-4776
Advisories
Disclosure Policy
Contact Us
Check with SCA
Defend your code against
SpringShell
in two ways: read our
blog post
with what-to-do advice, and use
Checkmarx SCA
to test your applications.
9.8
Critical
Severity
Critical Severity
9.8
CX-2021-4776
/ State: Published
Command injection vulnerability in s3-uploader
node
nodejs
javascript
npm
rce
Adar Zandberg
Apr 25, 2021
Details
Overview
9.8
Critical
Severity
Critical Severity
9.8
Properties
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Confidentiality:
High
Integrity:
High
Availability:
High
Advisory Timeline
Discovered
Mar 22, 2021
Published
Apr 25, 2021
Stay up to date with our newsletter
Subscribe
/advisory/CX-2021-4776/