Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-7614

npm-programmatic through 0.0.12 is vulnerable to Command Injection.The packages and option properties are concatenated together without any validation and are used by the 'exec' function directly.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.013
EPSS Ranking 79.3%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2020-7614


Contact Us

Shodan ® - All rights reserved