Vulnerabilities
Vulnerable Software
Amazon:  >> Aws Lambda  >> 0.0.8  Security Vulnerabilities
In aws-lambda versions prior to version 1.0.5, the "config.FunctioName" is used to construct the argument used within the "exec" function without any sanitization. It is possible for a user to inject arbitrary commands to the "zipCmd" used within "config.FunctionName".
CVSS Score
9.8
EPSS Score
0.005
Published
2020-01-08


Contact Us

Shodan ® - All rights reserved