Vulnerabilities
Vulnerable Software
Eve-Ng:  >> Eve-Ng  >> 2.0.3-112  Security Vulnerabilities
An arbitrary file upload vulnerability in the apiImportLabs function in api_labs.php of EVE-NG 2.0.3-112 Community allows attackers to execute arbitrary code via a crafted UNL file.
CVSS Score
7.2
EPSS Score
0.005
Published
2022-10-20
An OS Command Injection vulnerability in the configuration parser of Eve-NG Professional through 4.0.1-65 and Eve-NG Community through 2.0.3-112 allows a remote authenticated attacker to execute commands as root by editing virtualization command parameters of imported UNL files.
CVSS Score
8.8
EPSS Score
0.058
Published
2022-05-04


Contact Us

Shodan ® - All rights reserved