Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2020-15141
In openapi-python-client before version 0.5.3, there is a path traversal vulnerability. If a user generated a client using a maliciously crafted OpenAPI document, it is possible for generated files to be placed in arbitrary locations on disk.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.004
EPSS Ranking
57.8%
CVSS Severity
CVSS v3 Score
3.0
CVSS v2 Score
4.0
References
https://github.com/triaxtec/openapi-python-client/blob/main/CHANGELOG.md#053---2020-08-13
https://github.com/triaxtec/openapi-python-client/commit/3e7dfae5d0b3685abf1ede1bc6c086a116ac4746
https://github.com/triaxtec/openapi-python-client/security/advisories/GHSA-7wgr-7666-7pwj
https://pypi.org/project/openapi-python-client
https://github.com/triaxtec/openapi-python-client/blob/main/CHANGELOG.md#053---2020-08-13
https://github.com/triaxtec/openapi-python-client/commit/3e7dfae5d0b3685abf1ede1bc6c086a116ac4746
https://github.com/triaxtec/openapi-python-client/security/advisories/GHSA-7wgr-7666-7pwj
https://pypi.org/project/openapi-python-client
Products affected by CVE-2020-15141
Openapi-Python-Client Project
»
Openapi-Python-Client
»
Version:
0.1.0
cpe:2.3:a:openapi-python-client_project:openapi-python-client:0.1.0
Openapi-Python-Client Project
»
Openapi-Python-Client
»
Version:
0.1.1
cpe:2.3:a:openapi-python-client_project:openapi-python-client:0.1.1
Openapi-Python-Client Project
»
Openapi-Python-Client
»
Version:
0.1.2
cpe:2.3:a:openapi-python-client_project:openapi-python-client:0.1.2
Openapi-Python-Client Project
»
Openapi-Python-Client
»
Version:
0.2.0
cpe:2.3:a:openapi-python-client_project:openapi-python-client:0.2.0
Openapi-Python-Client Project
»
Openapi-Python-Client
»
Version:
0.2.1
cpe:2.3:a:openapi-python-client_project:openapi-python-client:0.2.1
Openapi-Python-Client Project
»
Openapi-Python-Client
»
Version:
0.3.0
cpe:2.3:a:openapi-python-client_project:openapi-python-client:0.3.0
Openapi-Python-Client Project
»
Openapi-Python-Client
»
Version:
0.4.0
cpe:2.3:a:openapi-python-client_project:openapi-python-client:0.4.0
Openapi-Python-Client Project
»
Openapi-Python-Client
»
Version:
0.4.1
cpe:2.3:a:openapi-python-client_project:openapi-python-client:0.4.1
Openapi-Python-Client Project
»
Openapi-Python-Client
»
Version:
0.4.2
cpe:2.3:a:openapi-python-client_project:openapi-python-client:0.4.2
Openapi-Python-Client Project
»
Openapi-Python-Client
»
Version:
0.5.0
cpe:2.3:a:openapi-python-client_project:openapi-python-client:0.5.0
Openapi-Python-Client Project
»
Openapi-Python-Client
»
Version:
0.5.1
cpe:2.3:a:openapi-python-client_project:openapi-python-client:0.5.1
Openapi-Python-Client Project
»
Openapi-Python-Client
»
Version:
0.5.2
cpe:2.3:a:openapi-python-client_project:openapi-python-client:0.5.2
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved