Vulnerabilities
Vulnerable Software
Pypi:  Security Vulnerabilities
The bin-collect package in PyPI before v0.1 included a code execution backdoor inserted by a third party.
CVSS Score
9.8
EPSS Score
0.008
Published
2022-07-22
The bin-collection package in PyPI before v0.1 included a code execution backdoor inserted by a third party.
CVSS Score
9.8
EPSS Score
0.005
Published
2022-07-22
The RootInteractive package in PyPI v0.0.5 to v0.0.19b0 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.
CVSS Score
9.8
EPSS Score
0.007
Published
2022-06-24
The cryptoasset-data-downloader package in PyPI v1.0.0 to v1.0.1 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.
CVSS Score
9.8
EPSS Score
0.007
Published
2022-06-24
The cloudlabeling package in PyPI v0.0.1 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.
CVSS Score
9.8
EPSS Score
0.004
Published
2022-06-24
The ML-Scanner package in PyPI v0.1.0 to v0.1.5 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.
CVSS Score
9.8
EPSS Score
0.004
Published
2022-06-24
The AAmiles package in PyPI v0.1.0 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.
CVSS Score
9.8
EPSS Score
0.004
Published
2022-06-24
The KGExplore package in PyPI v0.1.1 to v0.1.2 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.
CVSS Score
9.8
EPSS Score
0.007
Published
2022-06-24
The watools package in PyPI v0.0.1 to v0.0.8 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.
CVSS Score
9.8
EPSS Score
0.007
Published
2022-06-24
The Beginner package in PyPI v0.0.2 to v0.0.4 was discovered to contain a code execution backdoor via the request package. This vulnerability allows attackers to access sensitive user information and digital currency keys, as well as escalate privileges.
CVSS Score
9.8
EPSS Score
0.007
Published
2022-06-24


Contact Us

Shodan ® - All rights reserved