← volver
CVE-2024-55964criticalCWE-94

CVE-2024-55964

43Vexday Risk Score

Corrige pronto. Ella tiene exploit funcional público.

ssvc Attendcvss 9.8epss 6.6%
de la publicación al arma0 días
Publicada en NVD26 mar
metasploit25 mar
probabilidad de explotación
6.6%top 7% de las CVE
explotación observada
noninguna fuente lo reporta
An issue was discovered in Appsmith before 1.52. An incorrectly configured PostgreSQL instance in the Appsmith image leads to remote command execution inside the Appsmith Docker container. The attacker must be able to access Appsmith, login to it, create a datasource, create a query against that datasource, and execute that query.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Productos afectados
n/a · n/a