Vulnerabilities
Vulnerable Software
Dnt:  Security Vulnerabilities
im-resize through 2.3.2 allows remote attackers to execute arbitrary commands via the "exec" argument. The cmd argument used within index.js, can be controlled by user without any sanitization.
CVSS Score
9.8
EPSS Score
0.033
Published
2020-02-04
im-metadata through 3.0.1 allows remote attackers to execute arbitrary commands via the "exec" argument. It is possible to inject arbitrary commands as part of the metadata options which is given to the "exec" function.
CVSS Score
9.8
EPSS Score
0.018
Published
2020-02-04


Contact Us

Shodan ® - All rights reserved